Reported Invoicely data breach exposes 180,000 customer and employee records

Reported Invoicely data breach exposes 180,000 customer and employee records

Cybersecurity researcher Jeremiah Fowler uncovered an unsecured database. The breach exposed nearly 180,000 files containing personal and financial data. Invoicely, a global billing and accounting platform, faces scrutiny over a large-scale data exposure that included tax IDs, addresses, and payment details.


The unsecured dataset included documents in XLSX, CSV, PDF, and image formats. According to the report, the exposed materials contained a wide range of personally identifiable information (PII) such as full names, physical and email addresses, phone numbers, tax identification numbers, and, in some cases, financial account details. Fowler said the data appeared to belong to individuals and organisations across multiple countries, reflecting the company’s global user base.

The exposure was discovered as part of Fowler’s routine web security research. He reported that the open database could have allowed unauthorised access to sensitive business and personal information for an unknown period before discovery. Invoicely, which operates as a digital invoicing and payments service, has not yet issued a formal public statement about the breach or confirmed the timeframe of the exposure.

Cybersecurity experts warn that such unprotected databases can become easy targets for cybercriminals. The combination of financial details and identification numbers, they note, creates an elevated risk of identity theft, financial fraud, and phishing campaigns. Attackers could also use the information to impersonate individuals or businesses in social engineering schemes.

“The volume and nature of this data make it highly valuable for exploitation,” Fowler noted in the report. “Even partial information, such as tax numbers or email addresses linked to invoices, can be used to construct convincing scams.”

Data breaches involving financial software providers have become increasingly common as small and mid-sized businesses adopt cloud-based tools to manage operations. Analysts say the Invoicely incident underscores ongoing concerns about security standards within SaaS-based accounting and billing platforms, particularly those serving global markets where compliance regimes differ.

While no evidence has yet surfaced of malicious use, cybersecurity professionals advise affected organisations and individuals to exercise caution. Common recommendations include monitoring for unusual account activity, resetting passwords, and avoiding unsolicited emails requesting personal or payment information.

Website Planet stated that it notified Invoicely of the exposure and that the database was secured shortly after disclosure. The report did not specify whether the incident has been reported to relevant data protection authorities, though regulations such as the EU’s General Data Protection Regulation (GDPR) would require notification if European residents’ data were included.

As of publication, Invoicely had not publicly confirmed the breach or commented on remediation steps. The company’s website continues to promote its invoicing and payment solutions to freelancers, agencies, and small businesses across more than 100 countries.



  • Cargostore CEO marks five years with expansion plans

    Cargostore CEO marks five years with expansion plans

    Cargostore CEO Andrew Hart marks five years leading global expansion. The container leasing specialist has doubled profits during his tenure and completed two acquisitions, while positioning assets across its international depot network to support further growth in offshore energy, logistics, and temperature-controlled container markets.


  • Supporting neurodivergent employees in the workplace

    Supporting neurodivergent employees in the workplace

    Neurodiversity presents both opportunity and responsibility for modern workplaces. Dan Kentley, Head of Assessment and Specialist Clinical Services at Onebright, explains why organisations that recognise neurodivergent strengths — and make practical workplace adjustments — can unlock productivity, innovation, and stronger employee retention.


  • Tariffs drive sharp fall in UK exports to US

    Tariffs drive sharp fall in UK exports to US

    US tariffs trigger sharp drop in British exports to America. New trade barriers cut the value of UK goods shipped to the US by more than 10% in 2025, with clothing, footwear, artworks, and cars among the sectors recording the steepest declines.