Does anyone in my circles know anyone working for the IT of Lego?
I just received Malware to an Email address I only ever used to login to the Lego shop. The sender of the malware tried to fake a lego.com sender (not really well).
I never used the email address for anything else, so this lets me believe the colleagues at Lego may have had a data leak.
@harald Yes, I contacted them at https://www.lego.com/de-de/service/email-us/details/LEGO%20Company/Privacy%20Policy
My hopes for an answer are "limited". I am probably responsible for someone at the service desk scratching his head for days ;-).
@Masek You can try the security contact: https://lego.com/.well-known/security.txt
https://www.lego.com/en-us/service/email-us/details/Products/Products%2FOther
Sadly it does not seem like they have a dedicated contact for security issues, which means you most likely have to go a few rounds before getting to anybody who can actually help.