Levi Strauss discloses data breach via social engineering
Levi Strauss & Co. has disclosed a data breach resulting from a social engineering attack. According to a regulatory filing with the SEC, attackers successfully accessed and exfiltrated “certain corporate information” by targeting three employees' work computers.
The company stated that its preliminary investigation indicates no consumer data was affected and that the incident caused no disruption to its operations. Levi Strauss expects the breach to have no material impact on its business. Following the detection of the intrusion, the company initiated incident response procedures, engaged external cybersecurity experts, and successfully terminated the unauthorized access.
While the specific nature of the stolen data has not been disclosed, the incident appears to be part of a broader trend. Reports indicate that over 200 companies have been targeted in recent weeks by hackers using similar social engineering tactics. These methods involve posing as IT support or colleagues via phone calls to trick employees into providing credentials and multi-factor authentication codes through spoofed login pages. Google researchers have identified a group of crews involved in such campaigns under the designation UNC6671, though no direct link has been confirmed between that group and the Levi Strauss breach.
Entities
Google · Levi Strauss & Co. · SEC · UNC6671