MalwareRansomwareLockBit BlackLockBit 3.xData ExfiltratedData EncryptedRansom DemandedIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
KULICKE AND SOFFA INDUSTRIES, INC.
bd_93092a8b694937b9 · schema v1 · pii pii-v1
Full breach record for KULICKE AND SOFFA INDUSTRIES, INC. →Kulicke and Soffa Industries, Inc. disclosed a ransomware attack by LockBit Black discovered on May 12, 2024. The incident resulted in the encryption of files and potential exfiltration of employee and dependent personal information, including names, identification numbers, and bank account/routing numbers. The company engaged forensic investigators, reset credentials, and offered 12 months of Experian identity monitoring services.
Vermont clock✗ VT AG >45 bday21 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_79afddd586c0be58Maine State AGfiled 2024-10-08(1d gap)Verified
- bd_bb0545fb8150a943Indiana State AGfiled 2024-10-08(1d gap)Verified
- bd_8e5f97482b231358California State AGLockBit Blackfiled 2024-10-10(3d gap)Candidate
- bd_be666efde9fec6fdCalifornia State AGLockBit Blackfiled 2024-11-22(46d gap)Candidate
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-10-07-kulicke-soffa-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 7, 2024
- Raw hash
- 2e72f5a73a93e95e8343cb6f5474bf770b23b9ec06d4f2af85b11442d1e76a0d
Reporting entity
- Name
- KULICKE AND SOFFA INDUSTRIES, INC.norm: kulicke and soffa
Victim entity
- Name
- KULICKE AND SOFFA INDUSTRIES, INC.norm: kulicke and soffa
Incident
- Discovered
- May 12, 2024
- Materiality determined
- —
- Notification sent
- Oct 7, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Ransomware· LockBit Black
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- LockBit BlackExternalFinancial
- Regulator citations
- Filed notice with Vermont Attorney General
Compliance
- Time to disclose
- 21 weeks(148 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.