2026 Levi Strauss — social engineering of 3 employees; corporate data accessed and extracted (Aug 7)
Data compromised
Certain corporate information accessed and extracted (regulatory filing / Reuters). Consumer customer census and field inventory not published at indexing — recordsAffected 0.
Technical writeup
Company-confirmed social-engineering intrusion — On Friday, August 7, 2026 Levi Strauss disclosed in a regulatory filing (covered by Reuters) that an unauthorized party gained access through a social engineering attack targeting three employees, and that preliminary findings showed certain corporate information was accessed and extracted. The company said it implemented containment, launched an investigation, saw no business-operations disruption, and does not expect a material financial impact. Reuters noted broader vishing/phone-based trap activity against many firms in the prior month, with Levi Strauss among names appearing in related intelligence sets. No public consumer notification count or detailed data-type list was available at indexing, so recordsAffected is 0 pending any state AG or customer notice. Distinct from Levi Strauss’s 2024 California AG stub listing.
Root cause
Social engineering attack targeting three Levi Strauss employees, allowing an unauthorized third party to gain access to company systems. Preliminary investigation found certain corporate information was accessed and extracted. Containment measures implemented; operations not disrupted per company regulatory filing.
References
- https://www.ksl.com/article/51607184/levi-strauss-reveals-cybersecurity-breach-amid-wider-wave-of-attacks
- https://economictimes.indiatimes.com/tech/technology/levi-strauss-reveals-cybersecurity-breach-amid-wider-wave-of-attacks/articleshow/133037223.cms
- https://futureproof.app/blog/levi-strauss-data-breach-hackers-access-corporate-data/