PcComponentes A.I CyberSecurity Scoring
PcComponentes
Company Information
Website:https://www.pccomponentes.com
Employees number:651
Number of followers:46,732
NAICS:334
Industry Type:Computers and Electronics Manufacturing
Homepage:pccomponentes.com
PcComponentes Risk Score (AI oriented)
Between 600 and 649
PcComponentesComputers and Electronics Manufacturing
Updated:
04/04/2026
04/04/2026
633/1000
Poor
Caa
PcComponentes Global Score (TPRM)
xxxx
PcComponentesComputers and Electronics Manufacturing
Score locked

PcComponentesPoor
Current Score
633Caa (POOR)
01000
2 incidents
-102 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
640
MAY 2026
637
APRIL 2026
635
MARCH 2026
631
FEBRUARY 2026
631
JANUARY 2026
730
Breach
22 Jan 2026 • PcComponentes
PcComponentes: Top PC components store denies data breach - PcComponentes says it is safe, despite hacker claims
PcComponentes Credential Stuffing Attack
628
MEDIUM-102
PCC1769088339
PcComponentes Denies Major Data Breach, Confirms Limited Credential Stuffing Attack
Spanish electronics retailer PcComponentes has refuted claims of a large-scale data breach after a hacker alleged the theft of 16.3 million customer records. The company acknowledged a credential stuffing attack but stated that far fewer accounts were impacted than claimed.
The incident began when a threat actor, identified as daghetiaw, posted on an underground forum offering a dataset purportedly containing names, postal addresses, IP addresses, product wishlists, and Zendesk customer support messages. To validate the claim, the hacker released a sample of 500,000 records.
PcComponentes responded with a public statement, asserting that no unauthorized access to its databases or internal systems occurred. The company disputed the hacker’s claim of 16 million affected accounts, noting that its active user base is significantly smaller. Instead, it confirmed a credential stuffing attack, where attackers used leaked login credentials from other breaches to gain access to some accounts.
While the company downplayed the severity, it confirmed that exposed data included names, IDs, postal addresses, IP addresses, and phone numbers but not financial details, as PcComponentes does not store payment information. Customer passwords were also not compromised, as they are not retained in the company’s database.
As a precaution, PcComponentes has implemented mandatory CAPTCHA verification and two-factor authentication (2FA) for all future logins. The incident was first reported by BleepingComputer.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
DECEMBER 2025
730
NOVEMBER 2025
729
OCTOBER 2025
729
SEPTEMBER 2025
728
AUGUST 2025
727
JULY 2025
727
JUNE 2020
759
Breach
16 Jun 2020 • PcComponentes
Zendesk and PcComponentes: Online retailer PcComponentes says data breach claims are fake
PcComponentes Credential Stuffing Attack
656
CRITICAL-103
ZENPCC1769030611
PcComponentes Denies Data Breach but Confirms Credential Stuffing Attack Impacting Customers
Spain’s leading technology retailer, PcComponentes, has refuted claims of a major data breach affecting 16 million customers but confirmed a credential stuffing attack exposed sensitive account details. The incident emerged after a threat actor, daghetiaw, posted a purported database containing 16.3 million records on hacker forums, leaking 500,000 entries and offering the remainder for sale.
The leaked data included order histories, physical addresses, full names, phone numbers, IP addresses, product wishlists, and customer support messages exchanged via Zendesk. However, PcComponentes stated that no financial details or passwords were stored on its systems and that the claimed 16 million affected accounts was exaggerated, as its active user base is significantly smaller.
An investigation revealed the attack stemmed from credential stuffing where attackers used reused login credentials from previous breaches to access accounts. Threat intelligence firm Hudson Rock traced the compromised credentials to info-stealing malware infections, with some logins dating back to 2020. A sample of verified emails from the leak matched records in existing infostealer logs.
For affected accounts, exposed data included:
- Full names
- National ID numbers
- Physical addresses
- IP addresses
- Email addresses
- Phone numbers
In response, PcComponentes implemented CAPTCHA protections, mandatory two-factor authentication (2FA) for all accounts, and invalidated active sessions, forcing users to re-authenticate with 2FA enabled. The company did not disclose the exact number of impacted customers.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for PcComponentes ??
What was PcComponentes's A.I Rankiteo Cyber Score in May 2026 ??
What was PcComponentes's A.I Rankiteo Cyber Score in April 2026 ??
What was PcComponentes's A.I Rankiteo Cyber Score in March 2026 ??
What was PcComponentes's A.I Rankiteo Cyber Score in February 2026 ??
What was PcComponentes's A.I Rankiteo Cyber Score in January 2026 ??
What was PcComponentes's A.I Rankiteo Cyber Score in December 2025 ??
What was PcComponentes's A.I Rankiteo Cyber Score in November 2025 ??
What was PcComponentes's A.I Rankiteo Cyber Score in October 2025 ??
What was PcComponentes's A.I Rankiteo Cyber Score in September 2025 ??
What was PcComponentes's A.I Rankiteo Cyber Score in August 2025 ??
What was PcComponentes's A.I Rankiteo Cyber Score in July 2025 ??
What is the average per-incident point impact on PcComponentes's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with PcComponentes ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view PcComponentes's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?