Manufacturing

Industry

Northwest Paper Box Manufacturers Hit in Cyberattack

June 24, 2026

Camas, WA-based Northwest Paper Box Manufacturers suffered a cyberattack in June where personally identifiable information ended up stolen in the hack.
“On June 27, 2026, NW Paper became aware of unusual activity on their network and immediately launched an investigation which included working with third-party specialists,” the company said in a notice. “The investigation determined there was unauthorized access to a portion of NW Paper’s network between June 24, 2026 and June 28, 2026.”
As a result of the investigation, NW Paper conducted a comprehensive review of the relevant files and folders. They then determined the type of information the files contained and to whom it belonged.

read more

Cosmetics Giant, Estee Lauder, Hit in Third-Party Attack

August 9, 2025

As a result of a third-party issue, New York, New York-based cosmetics giant, Estee Lauder Companies, suffered a cyberattack in August of last year and is now letting victims know their personally identifiable information ended up stolen in the hack.
“We became aware of a cybersecurity issue involving a vulnerability in the Oracle E-Business Suite system which is used by the Estee Lauder Companies for HR management purposes,” the company said in a letter to victims. “On June 19, 2026, we determined through our investigation that, on or around August 9, 2025, an unauthorized third party gained access to the Oracle E-Business Suite system and obtained personal information of certain individuals.”
The affected information included names, postal and email addresses, dates of birth, Social Security numbers, passport numbers, financial account information (bank account numbers), health information, and employment-related information (such as performance evaluation and payroll information). The impacted data varied for each affected individual.

read more

Cyberattack at Lawn Tractor Maker Kubota North America

March 16, 2026

Grapevine, Texas-based lawn tractor maker Kubota North America Corporation suffered a cyberattack in March where threat actors obtained personally identifiable information about employees during the hack.
“We recently identified and addressed an incident involving unauthorized access to certain network systems between March 16, 2026, and April 20, 2026,” said a notice that went out to victims. “When we learned of the incident, we immediately took steps to secure our network.”
On April 30, Kubota found files maintained by its human resources team ended up accessed as part of this incident. The company then went throught the fines and by June 16, it determined that one or more file(s) contained information from employees.

read more

Tata Electronics Suffered ‘Cybersecurity Incident’

June 10, 2026

Operations remain unaffected after Tata Electronics suffered “cybersecurity incident,” as researchers said World Leaks posted component design and specification papers of Apple and Tesla, customers of the technology giant.
The ransomware group posted more than 200,000 files on the dark web, security researchers said in a Reuters report.
“A few weeks ago, Tata Electronics identified a cybersecurity incident on some of our systems. Our response protocols deployed immediately, and the incident has had no impact on our operations across businesses, which remain unaffected,” Tata Electronics told Reuters.

read more

Concrete Maker Rockville Fuel & Feed Suffers Cyberattack

April 1, 2026

Rockville, Maryland-based concrete maker Rockville Fuel & Feed Co. suffered a cyberattack in February where personally identifiable information ended up stolen in the hack
“On April 1, 2026, we became aware of suspicious activity within our network,” the company said in a notice to victims. “Once identified, we took immediate steps to secure our network and engaged third-party specialists to assist in the containment of the activity and investigate the nature and scope of the activity.”
As a result of the investigation, Rockville learned threat actors accessed certain files on its network.

read more

Furniture Maker Nickey Kehoe Hit in Cyberattack

March 29, 2026

Los Angeles, California-based furniture manufacturer Nickey Kehoe suffered a cyberattack in March where personally identifiable information ended up stolen in the hack.
“On March 29, 2026, we identified an unauthorized email sent through our email service provider, Klaviyo, as well as an export event that included receipt of the customer information stored in Klaviyo’s system,” the company said in a notice to victims. “Within 24 hours of the event, we had removed the compromised access credentials, and improved the security protocols and processes associated with accessing the system.”
Following these updates, the company said it did not identify any further attempts to access the information stored by Klaviyo, nor any unauthorized access with any other Nickey Kehoe systems.

read more

Textile Maker Texollini Suffers Cyberattack

February 16, 2026

Long Beach, California-based textile manufacturer, Texollini, suffered a cyberattack in February where personally identifiable information ended up stolen in the hack.
“Texollini recently learned of anomalous activity within our environment,” the company said in a notice to victims. “We immediately launched an investigation, with the assistance of third-party forensic specialists, to determine the nature and scope of the activity.”
The company’s investigation determined its environment was subject to unauthorized access from February 16 to February 18, and certain files ended up accessed by the unauthorized actor.

read more

Cyberattack at Specialty Building Materials Maker Perma-Chink Systems

May 7, 2026

Redmond, Washington-based specialty building materials company Perma-Chink Systems, Inc. suffered a cyberattack in April where personally identifiable information ended up stolen in the hack.
“On or about May 7, 2026, we identified unauthorized activity on our network,” the company said in a notice to victims of the attack. “Once identified, we quickly engaged third-party specialists to assist us with determining the nature and scope of the activity and conducting an investigation.
During the investigation, the company found certain files ended up potentially copied from its internal network.

read more

Cyberattack at Precision Metal Parts Maker, Bomco

June 14, 2025

Gloucester, Massachusetts-based precision metal component provider, Bomco, Inc. suffered a cyberattack in June last year and is now informing victims their personally identifiable information ended up stolen in the hack.
“On June 17, 2025, Bomco became aware that certain files in its network ended up accessed by an unauthorized actor,” the company said in a notice to victims. “Bomco promptly launched an investigation to determine the nature and scope of this incident.”
As a result of the investigation, the company determined an unauthorized actor gained access to certain files within Bomco’s network from June 14, 2025 to June 16, 2025, and may have copied those files.

read more

Chain Manufacturer, pewag Suffers Cyberattack

March 30, 2026

Bolingbrook, Illinois-based U.S. headquarters for chain manufacturer, pewag, Inc., suffered a cyberattack in March, where personally identifiable information ended up stolen in the hack.
“On or about April 8, 2026, we became aware of unusual activity in our digital environment,” the company said in a letter to victims. “Upon becoming aware, we promptly began an investigation into the scope and nature of the suspicious activity and retained experts to investigate the unusual activity.”
As a result of the investigation into the hack that occurred March 30, the company found certain information ended up copied by an unauthorized individual.

read more