MalwareRansomwareSupply Chain (3P Vendor)Data ExfiltratedData EncryptedRansom DemandedPIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumActive
PUMA North America, Inc.
bd_52794aa715649334 · schema v1 · pii pii-v1
Full breach record for PUMA North America, Inc. →PUMA North America, Inc. filed a New Hampshire security breach notification on February 8, 2022, regarding a ransomware attack on third-party provider Kronos. The incident resulted in the encryption of Kronos systems and unauthorized access to PUMA employee data, including names and Social Security numbers. PUMA is notifying affected individuals and cooperating with law enforcement.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_19ebc5a096f4e012California State AGfiled 2022-02-03(5d gap)Verified
- bd_2f6215e58a3bea96Maine State AGfiled 2022-02-03(5d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/puma-north-america-20220208.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 8, 2022
- Raw hash
- cb908b043e3ac76e8cbe92b0588fcf8454733f9844cf9ad5bd176306ed95cec5
Reporting entity
- Name
- PUMA North America, Inc.norm: puma north america
Victim entity
- Name
- PUMA North America, Inc.norm: puma north america
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- PartnerFinancial
- Initial access
- supply_chain
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.