Bad Actors Stole DoorDash User Data in October Cyberattack

DoorDash has reached out to affected customers.
November 18, 2025
 / 
meritsolutions
 / 
Image

Attention DoorDash users: The company suffered a cyberattack in October that may have exposed your personal information.

DoorDash confirmed the data breach in a post on its customer support website. According to the company, scammers targeted a DoorDash employee in a social engineering scheme. DoorDash did not elaborate further, but did confirm that the company shut down the scammer’s access, investigated the situation, and contacted law enforcement.

Not all DoorDash users appear to be affected. However, those that are affected include consumers, Dashers, and merchants. These affected customers may have had any of the following information compromised:

  • First and last name
  • Phone number
  • Email address
  • Physical address

DoorDash confirmed that no “sensitive” information was lost in the breach, such as Social Security numbers, government IDs, driver’s licenses, or financial information. As such, there’s little risk of identity theft or financial loss from this scheme. The real concern is that scammers can use this information in future phishing schemes.

If you use DoorDash, and are wondering whether or not you had data exposed, check your email, as DoorDash says it has contacted affected customers.

Share This

Leave a Reply



Sign Up for weekly MERIT Security Briefing

By signing up, you agree to our Privacy Policy.