Levi's reveals security tear may have let hackers steal important corporate data
Crucial data is missing following Levi's attack, including who the threat actors were, what kind of files they stolen, or if customers are at risk.
Levi's, the renowned clothing brand, disclosed a recent cyberattack that may have resulted in the theft of critical corporate data. However, specific details surrounding the incident remain undisclosed. The company reported to the US Securities and Exchange Commission (SEC) that hackers breached their network through "social engineering" targeting three employees.
The exploited technique is unclear, be it email, voice phishing, or another method. Post-attack, Levi's swiftly implemented security measures and initiated an investigation, though the nature of these responses and the data recovered are unknown. Levi's maintains that the incident did not disrupt business operations or have any significant impact.
While no perpetrators have claimed responsibility, speculation points towards the financially motivated threat cluster known as UNC6671, rumored to have utilized a voice phishing tactic, often impersonating IT department personnel.
Written by urgent.news from TechRadar's reporting — not their text. Machine-written — it may contain errors, so check the original before relying on it.