HANESBRANDS INC.
ent_019e230197230c26b2f93d013debf93c
Disclosures
13
SEC 10-K Item 1C · State AG · 10 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
75,106
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- HANESBRANDS INC.
- Normalized
- hanesbrands— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- GX5LWVWZLL5S4W1L2F20
- SEC EDGAR CIK
- 0001359841
- Domain
- None on record
Disclosure history (13)newest first
- FEDERALSEC 10-K Item 1Cas victim2024-02-16
Hanesbrands Inc. 10-K Item 1C cybersecurity disclosure references a previously announced ransomware attack from May 31, 2022. Other than this incident, the company states no cybersecurity threats have materially affected operations. The filing describes the company's enterprise cybersecurity program, third-party vendor risk management, governance structure, and management oversight, but does not provide new details on affected individuals, data types, or threat actor attribution for the 2022 ransomware event.
- Maine State AGas victim2022-11-30
Hanesbrands Inc. experienced a ransomware incident on May 24, 2022, which was discovered the same day. The breach affected 186 Maine residents, compromising their names and driver's license or non-driver identification card numbers. The company began notifying consumers on August 16, 2022, and offered 24 months of identity theft protection services through Experian.
- New Hampshire State AGas victim2022-11-29
Hanesbrands, Inc. disclosed a ransomware incident detected on May 24, 2022, impacting internal IT systems. The incident was contained. Personal information affected included contact info, DOB, financial account data, government IDs (SSN, driver's license), and limited health information. The company reported to law enforcement, strengthened network security, and offered two years of Experian IdentityWorks protection.
- California State AGas victim2022-11-29
On May 24, 2022, HanesBrands detected a ransomware incident impacting certain internal IT systems. The company contained the incident, reported it to law enforcement, and conducted a data review that identified potentially impacted personal information including contact information, date of birth, financial account information, government-issued ID numbers (SSN, driver's license, passport), and limited employment-related health information. Affected individuals were offered two years of complimentary Experian IdentityWorks credit monitoring.
- Oregon State AGas victim2022-11-29
Hanesbrands Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2022-11-29. The breach occurred during 5/24/2022 - 6/6/2022. The breach was discovered on 5/24/2022. Notice was sent on 8/16/20229/30/202211/23/2022.
- Washington State AGas victim2022-11-23
Hanesbrands Inc. disclosed a ransomware incident detected on May 24, 2022, impacting internal IT systems. The incident was contained, and the company reported it to law enforcement. Personal information including SSNs, driver's licenses, DOB, and financial account data was exposed. 644 Washington residents were notified. The company offered two years of Experian IdentityWorks.
- Oregon State AGas victim2022-09-30
Hanesbrand Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2022-09-30. The breach occurred during 5/24/2022, 6/6/2022. The breach was discovered on 5/24/2022. Notice was sent on 8/16/20229/30/2022.
- South Carolina State AGas victim2022-08-17
Hanesbrands, Inc. notified South Carolina residents of a ransomware incident detected on May 24, 2022, impacting internal IT systems. The incident was contained. Personal information affected included contact info, DOB, financial account data, government IDs (SSN, driver's license, passport), and limited health information. Hanesbrands reported to law enforcement, secured systems, and offered two years of Experian IdentityWorks protection.
- Massachusetts State AGas victim2022-08-16
HanesBrands Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2022-08-16. 447 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas victim2022-08-16
Hanesbrands Inc. notified Montana residents of a ransomware incident detected on May 24, 2022. The incident impacted personal information including contact info, DOB, financial account data, government IDs (SSN, driver's license), and limited health information. The incident was contained, law enforcement was notified, and affected individuals were offered two years of Experian IdentityWorks protection.
- Indiana State AGas victim2022-08-16
Hanesbrands Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2022-05-24 and was reported on 2022-08-16. 431 Indiana residents were affected. 75,106 individuals affected in total.
- California State AGas victim2022-08-16
HanesBrands Inc. detected a ransomware incident on May 24, 2022, impacting internal IT systems. The incident has been contained. Affected data includes contact information, dates of birth, financial account information, government-issued IDs (SSN, driver's license, passport), and employment-related health information. The company engaged law enforcement, secured systems, and is offering two years of identity theft protection via Experian.
- Maine State AGas victim2022-08-16
An external system breach at HanesBrands Inc. was discovered on May 24, 2022. The breach affected approximately 109 Maine residents, exposing their names and driver's license or non-driver identification card numbers. The company began notifying affected individuals on August 16, 2022, and offered 24 months of identity protection services through Experian.