← Swisscom

2017 Swisscom — ~800k subscribers’ contact data via abused sales-partner credentials

2017 800.0K records affected Share on X

Data compromised

Contact and demographic fields Swisscom associates with subscription onboarding—not payment-card or call-content classes per the company

Technical writeup

Swisscom disclosed that criminals misused access belonging to an authorized external sales partner to pull contract‑metadata-style records for roughly 800,000 customers—chiefly mobile subscribers—including names, addresses, phone numbers, and birthdates. Swisscom argued core telecom assets were not “hacked” in the sense of a core-network intrusion and that password, payment, and traffic classes stayed out of scope, but the case remains a textbook third-party privileged-account abuse story that still surfaces in European telco risk reviews.

Root cause

Credential theft or partner-account takeover enabling bulk queries against subscriber CRM views

References