HackingStolen CredentialsData ExfiltratedEmployee Data InvolvedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICEMPLOYMENTMediumContained
Ahold Delhaize USA Services, LLC
bd_84dc1d53319d92cb · schema v1 · pii pii-v1
Full breach record for Ahold Delhaize USA Services, LLC →Ahold Delhaize USA Services, LLC detected unauthorized access to internal U.S. business systems on November 6, 2024. An unauthorized third party obtained files from an internal repository between November 5 and 6, 2024. The files contained employment records including names, contact info, SSNs, financial account numbers, and health information for current and former employees. The company engaged external cybersecurity experts and coordinated with federal law enforcement. Complimentary credit monitoring is offered.
California clockDiscovered Nov 6, 2024 → Notified Jun 26, 2025232d ✗ CA 60-day late33 weeks discovery → filing
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_5e6fc6f94e1ebc19Montana State AGfiled 2025-06-26Candidate
- bd_bb509c2b8f446382Iowa State AGfiled 2025-06-26Verified
- bd_bc97e0bff24dd5beWashington State AGfiled 2025-06-26Verified
- bd_be051dee63a72e5fOregon State AGfiled 2025-06-26Verified
Show 2 more filings ↓Show fewer ↑up to 5d gap
- bd_e0153bdab5a0956bMaine State AGfiled 2025-06-26Verified
- bd_01889d75c58d6111Texas State AGfiled 2025-07-01(5d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-604573
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 26, 2025
- Raw hash
- ee327ea88ea19bef9eea82683730fddfdf84a3d572f88b9bd9c74b0b6a87301d
Reporting entity
- Name
- Ahold Delhaizenorm: ahold delhaize
- Domain
- aholddelhaize.com
Victim entity
- Name
- Ahold Delhaize USA Services, LLCnorm: ahold delhaize usa
- Domain
- adusaservices.com
Incident
- Discovered
- Nov 6, 2024
- Materiality determined
- —
- Notification sent
- Jun 26, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICEMPLOYMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Coordinated with U.S. federal law enforcement
Compliance
- Time to disclose
- 33 weeks(232 days from discovery to filing)
- Compliance flags
- CA 60-day late · 232d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Nov 6, 2024→ Notified: Jun 26, 2025232d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.