HANESBRANDS INC.
ent_019e230197230c26b2f93d013debf93c
Disclosures
10
SEC 10-K Item 1C · State AG · 7 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
644
as filed · State AG WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- HANESBRANDS INC.
- Normalized
- hanesbrands— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- GX5LWVWZLL5S4W1L2F20
- SEC EDGAR CIK
- 0001359841
- Domain
- None on record
Disclosure history (10)newest first
- FEDERALSEC 10-K Item 1Cas victim2024-02-16
Hanesbrands Inc. 10-K Item 1C cybersecurity disclosure references a previously announced ransomware attack from May 31, 2022. Other than this incident, the company states no cybersecurity threats have materially affected operations. The filing describes the company's enterprise cybersecurity program, third-party vendor risk management, governance structure, and management oversight, but does not provide new details on affected individuals, data types, or threat actor attribution for the 2022 ransomware event.
- 🦞Maine State AGas victim2022-11-30
Hanesbrands Inc. experienced a ransomware incident on May 24, 2022, which was discovered the same day. The breach affected 186 Maine residents, compromising their names and driver's license or non-driver identification card numbers. The company began notifying consumers on August 16, 2022, and offered 24 months of identity theft protection services through Experian.
- ⛰️New Hampshire State AGas victim2022-11-29
Hanesbrands, Inc. disclosed a ransomware incident detected on May 24, 2022, impacting internal IT systems. The incident was contained. Personal information affected included contact info, DOB, financial account data, government IDs (SSN, driver's license), and limited health information. The company reported to law enforcement, strengthened network security, and offered two years of Experian IdentityWorks protection.
- 🐻California State AGas victim2022-11-29
On May 24, 2022, HanesBrands detected a ransomware incident impacting certain internal IT systems. The company contained the incident, reported it to law enforcement, and conducted a data review that identified potentially impacted personal information including contact information, date of birth, financial account information, government-issued ID numbers (SSN, driver's license, passport), and limited employment-related health information. Affected individuals were offered two years of complimentary Experian IdentityWorks credit monitoring.
- 🦫Oregon State AGas victim2022-11-29
Hanesbrands Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2022-11-29. The breach occurred during 5/24/2022 - 6/6/2022. The breach was discovered on 5/24/2022. Notice was sent on 8/16/20229/30/202211/23/2022.
- 🌲Washington State AGas victim2022-11-23
Hanesbrands Inc., a business sector entity reported a ransomware incident to the Washington Attorney General. The organization became aware of the incident on 2022-05-24 and filed notice on 2022-11-23. 644 Washington residents were affected. 183 days elapsed between awareness and notification. 0 days to identify the breach. 10 days to contain the breach.
- 🦫Oregon State AGas victim2022-09-30
Hanesbrand Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2022-09-30. The breach occurred during 5/24/2022, 6/6/2022. The breach was discovered on 5/24/2022. Notice was sent on 8/16/20229/30/2022.
- 🦬Montana State AGas victim2022-08-16
Hanesbrands Inc. reported a data breach to the Montana Attorney General. The breach was reported on 2022-08-16. The breach occurred on 5/24/2022. 37 Montana residents were affected.
- 🐻California State AGas victim2022-08-16
HanesBrands Inc. detected a ransomware incident on May 24, 2022, impacting internal IT systems. The incident has been contained. Affected data includes contact information, dates of birth, financial account information, government-issued IDs (SSN, driver's license, passport), and employment-related health information. The company engaged law enforcement, secured systems, and is offering two years of identity theft protection via Experian.
- 🦞Maine State AGas victim2022-08-16
An external system breach at HanesBrands Inc. was discovered on May 24, 2022. The breach affected approximately 109 Maine residents, exposing their names and driver's license or non-driver identification card numbers. The company began notifying affected individuals on August 16, 2022, and offered 24 months of identity protection services through Experian.