For years, Dell clients have been on the receiving finish of rip-off calls from folks claiming to be half of the pc maker’s help group. The scammers name from a sound Dell telephone quantity, know the client’s identify and deal with, and use info that needs to be identified solely to Dell and the client, together with the service tag quantity, pc mannequin, and serial quantity related to a previous buy. Then the callers try to rip-off the client into making a fee, putting in questionable software program, or taking another doubtlessly dangerous motion.
Recently, in response to quite a few social media posts similar to this one, Dell notified an unspecified quantity of clients that names, bodily addresses, and {hardware} and order info related to earlier purchases was by some means linked to an “incident involving a Dell portal, which comprises a database with restricted sorts of buyer info.” The obscure wording, which Dell is declining to elaborate on, seems to substantiate an April 29 publish by Daily Dark Web reporting the supply to promote purported personal info of 49 million individuals who purchased Dell gear from 2017 to 2024.
Daily Dark Web
The buyer info affected is equivalent in each the Dell notification and the for-sale advert, which was posted to, and later faraway from, Breach Forums, a web-based bazaar for folks seeking to purchase or promote stolen information. The buyer info stolen, in response to each Dell and the advert, included:
- Name
- Physical deal with
- Dell {hardware} and order info, together with service tag, merchandise description, date of order, and associated guarantee info
The Daily Dark Web expanded on the information the vendor claimed to have acquired:
The information, claimed to be up-to-date info registered at Dell servers, contains very important personal and firm info similar to full names, addresses, cities, provinces, postal codes, international locations, distinctive 7-digit service tags of techniques, system cargo dates (guarantee begin), guarantee plans, serial numbers (for screens), Dell buyer numbers, and Dell order numbers. Notably, the risk actor asserts to be the only possessor of this information, underscoring the severity of the breach. Among the staggering quantity of data, roughly 7 million rows pertain to particular person/personal purchases, whereas 11 million belong to client section firms. The remaining information pertains to enterprise, accomplice, faculties, or unidentified entities.

Daily Dark Web
The “incident,” as Dell attorneys and entrepreneurs name it—or related ones that may have occurred beforehand—would clear up a thriller that has vexed clients and reporters for nearly a decade: How are scammers acquiring info identified solely to Dell and the focused buyer? While neither supply stated telephone numbers had been affected, it wouldn’t be laborious for scammers to make use of names and bodily addresses to go looking different databases for that info.
In an e-mail, nevertheless, a Dell consultant stated: “There aren’t any indications these incidents are associated,” with out elaborating. The consultant declined to reply any further questions, together with whether or not the corporate has any concept how buyer info has been making its manner into the arms of scammers for nearly a decade. The notification additional stated: “We imagine there’s not a major threat to our clients given the kind of info concerned.”
As I reported in 2016 and once more 18 months later, scores of Dell clients have reported receiving the calls. Dell’s official response each occasions claimed the calls had been half of an industry-wide drawback that plagues many tech firms. To this present day, Dell hasn’t acknowledged that the calls are completely different as a result of they use info identified solely to Dell and the client.
People who obtain unsolicited calls claiming to come back from Dell ought to grasp up and both ignore them or name the Dell help line immediately. They shouldn’t have interaction with the caller or present any info. It’s additionally potential that scammers in possession of this info may use it in mail despatched to their e-mail or bodily deal with, assuming the scammers can discover it by means of a folks search service. The identical recommendation applies.



