Levi Strauss & Co. disclosed a cyberattack in an SEC filing in which unknown hackers used social engineering to compromise three employees' company-issued computers and exfiltrate corporate data. The company says its rapid response contained the breach before any consumer data was impacted, and no operational disruptions occurred. Some media outlets have linked the attack to UNC6671, a threat group associated with Google's Threat Intelligence Group and a recent wave of voice phishing attacks targeting hundreds of organizations. The investigation remains ongoing.

2m read timeFrom bleepingcomputer.com
Post cover image
Table of contents
Related Articles:

Questions this post answers

What threat group is linked to the Levi Strauss cyberattack and what tactics do they use?

Some media outlets have linked the Levi Strauss breach to UNC6671, a group that Google's Threat Intelligence Group (GTIG) associated with a wave of voice phishing (vishing) attacks targeting hundreds of organizations. The attackers used social engineering to compromise three Levi's employees and their company-issued computers, exfiltrating corporate data without impacting consumer data or causing operational disruptions. Teams tracking enterprise social engineering campaigns and threat actor attribution follow incidents like this on daily.dev.