Ransomware
Ahold Delhaize USA INC Ransom Attack
Primary Source βIncident Details
INC Ransom breached Ahold Delhaize USA (parent of Stop & Shop, Food Lion, Giant Food, Hannaford, and The Giant Company) between 5-6 November 2024, stealing up to 6 TB of data. Final breach count: 2,242,521 individuals’ names, contact details, dates of birth, SSNs, passport and driver’s license numbers, financial account details, and employee compensation/health data. E-commerce and pharmacy operations at several banners were disrupted. INC Ransom published ~800 GB on their leak site after ransom negotiations failed. Class action lawsuits filed by Stop & Shop and Food Lion employees.
Technical Details
- Initial Attack Vector
- INC Ransom ransomware-as-a-service operation; initial access vector not publicly confirmed; INC Ransom commonly exploits Citrix NetScaler vulnerabilities and phishing
- Malware Family
- INC Ransom
Timeline
- 2024-11-05 Breach occurred
- 2024-11-08 Publicly disclosed
- 2025-02-01 Customers notified