Ransomware

Ahold Delhaize USA INC Ransom Attack

πŸ“… 2024-11-05 🦠 INC Ransom
Primary Source β†—

Incident Details

INC Ransom breached Ahold Delhaize USA (parent of Stop & Shop, Food Lion, Giant Food, Hannaford, and The Giant Company) between 5-6 November 2024, stealing up to 6 TB of data. Final breach count: 2,242,521 individuals’ names, contact details, dates of birth, SSNs, passport and driver’s license numbers, financial account details, and employee compensation/health data. E-commerce and pharmacy operations at several banners were disrupted. INC Ransom published ~800 GB on their leak site after ransom negotiations failed. Class action lawsuits filed by Stop & Shop and Food Lion employees.

Technical Details

Initial Attack Vector
INC Ransom ransomware-as-a-service operation; initial access vector not publicly confirmed; INC Ransom commonly exploits Citrix NetScaler vulnerabilities and phishing
Malware Family
INC Ransom

Timeline

  1. 2024-11-05 Breach occurred
  2. 2024-11-08 Publicly disclosed
  3. 2025-02-01 Customers notified