Levi's reveals security tear may have let hackers steal important corporate data
Date:
Mon, 10 Aug 2026 12:55:00 +0000
Description:
Crucial data is missing following Levi's attack, including who the threat actors were, what kind of files they stolen, or if customers are at risk.
FULL STORY ======================================================================Copy link Facebook X Whatsapp Reddit Pinterest Flipboard Threads Email Share this article 0 Join the conversation Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter Attackers used social engineering to access Levis network and steal corporate data Details on
stolen information, methods, and perpetrators remain largely undisclosed Voicephishing extortion groups are suspected, though no one has claimed responsibility Levi Strauss has revealed it recently suffered a cyberattack and lost corporate files - however some crucial details around the incident are missing.
The company filed a new report with the US Securities and Exchange Commission (SEC), noting how hackers accessed its infrastructure through social engineering against three of its employees. We dont know if that was via email, voice phishing, or some other technique. After breaching the network, the crooks - who werent identified - accessed and exfiltrated certain corporate information. Again, we dont know which information was accessed, or how much of it. Latest Videos From TechRadar Watch full video here: Was it UNC6671? In response, Levis said it had initiated response protocols, implemented containment measures, and launched an investigation which remains ongoing. Again, we dont know what these measures are, or how the crooks were ousted.
The company says the incident did not disrupt its business operations, or caused interruptions, in any way, and that it does not expect it to have any material impact whatsoever. You may like 7-Eleven confirms cyberattack, says 'personal information' may have been hit Top US hedge funds targeted by major vishing campaign Unnamed hackers steal stolen data from Icarus hackers responsible for Klue supply chain hack and yes, it's as confusing as it sounds
While Levis did not name the perpetrators, and while none have yet claimed responsibility on the dark web, some publications have hinted at UNC6671, a financially motivated threat cluster that conducts data-theft extortion attacks through voice phishing. The tactic seems to have been borrowed from ShinyHunters, arguably one of the largest data extortionists out there.
The group would call their targets on the phone (usually low-level employees with access to company SaaS solutions) and, while pretending to be from the
IT department, convince the victims to either grant remote access , or to visit a malicious credential-grabbing landing page. Are you a pro? Subscribe to our newsletter Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed! Contact me with news and offers from other Future brands Receive email from us on behalf of our trusted partners or sponsors By submitting your information you agree to the Terms & Conditions and Privacy Policy and are aged 16 or over.
From there, the attackers would move in, map the infrastructure, exfiltrate valuable data, and then demand payment in cryptocurrency in exchange for deleting the data.
We have reached out to Levis with further questions and will update the article if we get an answer.
Via BleepingComputer The best antivirus for all budgets Our top picks, based on real-world testing and comparisons
Read our full guide to the best antivirus 1. Best overall: Bitdefender Total Security 2. Best for families: Norton 360 with LifeLock 3. Best for mobile: McAfee Mobile Security Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds.
======================================================================
Link to news story:
https://www.techradar.com/pro/security/levis-reveals-security-tear-may-have-le t-hackers-steal-important-corporate-data
--- Mystic BBS v1.12 A49 (Linux/64)
* Origin: tqwNet Technology News (1337:1/100)