Security News > 2022 > February > Puma hit by data breach after Kronos ransomware attack

Sportswear manufacturer Puma was hit by a data breach following the ransomware attack that hit Kronos, one of its North American workforce management service providers, in December 2021.
The data breach notification filed with several attorney generals' offices earlier this month says the attackers also stole personal information belonging to Puma employees and their dependents from the Kronos Private Cloud cloud environment before encrypting the data.
"Since the attack was discovered, Kronos has been conducting a comprehensive review of the impacted environment to determine whether any individual's personal information was subject to unauthorized access or acquisition," written letters sent to impacted individuals on February 3 say.
"On January 7, 2022, Kronos confirmed that some of your personal information was among the stolen data. We notified PUMA of this incident on January 10, 2022.".
While the breach notification doesn't mention how many Puma employees had their info stolen during the attack, information provided to the Office of the Maine Attorney General reveals that the ransomware operators got their hands on data belonging to 6,632 individuals.
Puma also said that the documents stolen during the Kronos ransomware attack include Social Security Numbers in filings with the same office.
News URL
Related news
- Texas State Bar warns of data breach after INC ransomware claims attack (source)
- Food giant WK Kellogg discloses data breach linked to Clop ransomware (source)
- Marks & Spencer breach linked to Scattered Spider ransomware attack (source)
- Data breach at Japanese telecom giant NTT hits 18,000 companies (source)
- PowerSchool previously hacked in August, months before data breach (source)
- Live Ransomware Demo: See How Hackers Breach Networks and Demand a Ransom (source)
- Ransomware gang creates tool to automate VPN brute-force attacks (source)
- SANS Institute Warns of Novel Cloud-Native Ransomware Attacks (source)
- ⚡ THN Weekly Recap: Router Hacks, PyPI Attacks, New Ransomware Decryptor, and More (source)
- BlackLock ransomware claims nearly 50 attacks in two months (source)