Puma suffers data breach caused by Kronos ransomware attack


The impact of last year’s Kronos ransomware attack is still being felt, with sports equipment company Puma now confirming it has suffered a related breach.
As reported by Bleeping Computer, Kronos filed a breach notification with several attorney generals’ offices earlier this month, which states that the attackers took data on Puma employees and their dependents from the Kronos Private Cloud (KPC).
“Since the attack was discovered, Kronos has been conducting a comprehensive review of the impacted environment to determine whether any individual’s personal information was subject to unauthorized access or acquisition,” said a letter delivered to affected Puma employees last week.
“On January 7, 2022, Kronos confirmed that some of your personal information was among the stolen data. We notified Puma of this incident on January 10, 2022.”
Puma employees under attack
In the filing provided to the Office of the Maine Attorney General, Kronos said that a total of 6,632 individuals have had their data stolen, including Social Security numbers.
To mitigate the effects of the data breach, Kronos has offered the affected individuals a care package that includes two years of free Experian IdentityWorks membership (credit card monitoring, identity restoration, and identity theft insurance).
Commenting on the news, Puma’s Senior Head of Communications, Kerstin Neuber, said that no Puma customer data was impacted.
Before encrypting all of the data on the target network, ransomware operators usually download as much of it as possible. That way, they can threaten to release the data online if the victim declines to pay the ransom or attempts to restore its systems from backup.
Not only do data leaks mean competitors might edge ahead, but they also mean data watchdogs and other government organizations may come crashing down, demanding heads roll for the breach of privacy.
Nonetheless, many firms choose not to cave in to ransom demands, with a view to disincentivizing future attacks. There is also no guarantee the threat actor will return the stolen data as promised.
Via BleepingComputer
Audio player loading… The impact of last year’s Kronos ransomware attack is still being felt, with sports equipment company Puma now confirming it has suffered a related breach. As reported by Bleeping Computer, Kronos filed a breach notification with several attorney generals’ offices earlier this month, which states that the…
Recent Posts
- Fitbit’s got a battery problem
- Adidas plugs its website and app into Amazon’s ‘Buy with Prime’ program
- An iOS update will give iPhone 15 Pro owners Visual Intelligence
- Is that Asus’s first portable heater? No, it’s the new ROG XG eGPU with a 600w RTX 5090 card and (wealthy) creatives will love it
- Nickelodeon’s next Avatar animated series is finally coming together
Archives
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- September 2018
- October 2017
- December 2011
- August 2010