Menu
Browse

Cyber Incident Victim: Levi Strauss & Co.

Date

Aug 2026

Location

United States of America

Status

Ongoing

Updated

2026-08-10 17:34

Timeline
Occurred
Undetermined
Discovered
Undetermined
Disclosed
Aug 2026
Resolved
Pending
Summary

Levi Strauss & Co disclosed a cyberattack affecting certain corporate data stored on employee computers, resulting from social engineering that compromised three employees' company-issued computers. The company said its response contained the attack and evicted the attackers, and preliminary findings indicate certain corporate information was accessed and exfiltrated, but no customer data appears to have been stolen. The company reported no interruption to business operations and does not believe the incident will have a material impact. The investigation is ongoing, and the company has not disclosed the threat actor's identity or any extortion demands.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 0 motives 1 technique
Threat Actors Type Location
0 actors Available to members Available to members

Description

Levi Strauss & Co disclosed a cyberattack on Friday, August 10, 2026, via a Form 8‑K filing with the US Securities and Exchange Commission. The company stated that the incident resulted from social engineering and affected three employees’ company‑issued computers. According to the filing, the attackers gained access to certain corporate data stored on those machines. Levi Strauss said its immediate response and containment actions led to the attackers’ eviction from the compromised computers.

Cyber Incident Image

Based on preliminary findings from the company’s investigation, Levi Strauss believes that certain corporate information was accessed and exfiltrated as a result of the breach. The company emphasized that, to date, no customer data appears to have been stolen. It also reported that there has been no interruption in business operations stemming from the incident. Levi Strauss further noted that it does not believe the incident has had, or is reasonably likely to have, a material impact on the company.

The investigation into the attack remains ongoing, and the company has not disclosed any details about the threat actor’s identity or whether extortion demands were made. Levi Strauss also has not shared specifics regarding the type of social engineering technique used by the attackers. SecurityWeek reported that it had contacted Levi Strauss for additional information and would update its coverage if the company responded.

Sources
Sources available to members
1 source