On September 23, 2025, the ransomware group World Leaks added Peruvian Connection to its leak site, claiming that internal files had been exfiltrated from the high-end fashion retailer during a ransomware attack.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Peruvian Connection
Get alerted the next time Peruvian Connection files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Peruvian Connection’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates the company, known for alpaca wool and pima cotton clothing, was listed on the World Leaks onion site. The listing states that internal files were taken. No confirmed total of affected customers has been released, and the precise volume or specific types of records remain unclear from available information. The breach follows the typical ransomware pattern of initial access, data exfiltration, and subsequent public shaming when demands are not met.
September 23, 2025 marks the public listing date. Peruvian Connection operates both an online store and physical locations worldwide, meaning customer records, order details, and contact information could be among the stolen material even if exact contents have not been disclosed.
Why This Matters for You and Your Family
When a retailer like Peruvian Connection suffers a breach, your personal details used to place orders — name, shipping address, email, phone number, and payment history — can end up in criminal hands. For many families this means more than spam: it creates fresh entry points for identity theft, account takeovers, and targeted scams. Children’s accounts linked to family email addresses or shared shipping details become especially vulnerable because one exposed record can chain to multiple logins.