Manufacturing

Industry

Road Products Maker, All States Materials Group, Hit in Cyberattack

August 25, 2025

West Springfield, Massachusetts-based road materials maker, All States Materials Group, Inc., suffered a cyberattack where threat actors made off with personally identifiable information from victims.
“During the early morning of August 25, 2025, All States Materials Group (ASMG) identified suspicious behavior indicating unauthorized activity was occurring on our network,” the company said in a letter to victims. “All States Materials Group immediately contacted Blue Mantis, ASMG’s independent cybersecurity investigation and recovery vendor, to provide assistance.”
Blue Mantis was able to quickly secure servers from further unauthorized activity and then began an independent cybersecurity analysis.

read more

Medical Device Maker, Tekni-Plex, Hit in Cyberattack

October 25, 2024

Wayne, Pennsylvania-based medical device maker, Tekni-Plex, Inc. suffered a cyberattack in August 2024 and is now informing victims of the attack.
“On November 18, 2024, TekniPlex identified suspicious activity on its computer network,” the company said in a letter to victims. “TekniPlex then determined that an unauthorized actor accessed their network at various times between October 25, 2024, and December 7, 2024, and that certain files ended up accessed and/or copied by the actor without authorization.
Upon determining this information, TekniPlex started up a comprehensive and time-intensive review of the involved data, with the assistance of third-party subject matter specialists, to assess the types of data that ended up impacted. They also sought out who the information belonged to.

read more

Ransomware Attack At Cabinet Maker, T.R.A. Industries

August 9, 2025

Liberty Lake, Washington-based wood cabinet maker T.R.A. Industries, Inc. suffered a ransomware attack where personally identifiable information ended up stolen during the hack.
“On August 5, 2025, our Information Services team detected unusual traffic on our network,” the company said in a letter to victims. “On August 9, 2025, an unauthorized intruder activated ransomware on our computer systems. We were able to quickly respond and terminate the intruder’s access to our systems.”
T.R.A. Industries then began the process of restoring its systems using backup data and determining what information could have ended up accessed by the unauthorized intruder. On August 29, 2025, the company finished its review of unencrypted data on our computer systems that may have contained personal information.

read more

Cyberattack at Wood Flooring Maker, Havco

March 30, 2025

Scott City, Missouri-based wood flooring maker, Havco Wood Products LLC, suffered a cyberattack in March and it is now letting victims know about the hack.
“On March 31, 2025, we detected suspicious activity within Havco’s computer network,” the company said in a letter to victims. “Upon discovering the incident, we promptly began an internal investigation and worked to secure our systems.”
The company also said it hired a forensic security firm to assist with its investigation and ensure the security of its computer network.
As a result of that investigation, the forensic team determined an unauthorized third party accessed Havco’s computer network for less than 24 hours from Sunday, March 30 until Monday, March 31.

read more

Personal Protection Device Maker, Sellmark, Hit in Cyberattack

March 10, 2025

Personal protection device manufacturer, Mansfield, Texas-based Sellmark Corporation suffered a cyberattack this past March and is now letting victims know about the hack.
“Sellmark Corporation identified and addressed a cybersecurity incident involving unauthorized access to its computer network,” the company said in a notice to victims. “When Sellmark first identified this activity, it immediately took measures to secure its systems and launched an investigation with the help of a cybersecurity firm.”
Sellmark also reported the incident that occurred March 10 to law enforcement, including the FBI. Through the investigation, Sellmark learned an unauthorized actor accessed its network and obtained copies of certain documents from its servers.

read more

Cyberattack at LoveSac Furniture Maker

February 12, 2025

Stamford, Connecticut-based The LoveSac Company suffered a cyberattack in February and is now letting victims know their personally identifiable information ended up stolen.
On February 28, LoveSac became aware of suspicious activity within its network environment. LoveSac launched an investigation and determined between February 12 and March 3 an unauthorized actor accessed certain systems within the environment and copied certain files from those systems.
“Although we have no evidence of any identity theft or fraud occurring in connection with this incident, LoveSac conducted a review of the copied files to confirm the information contained therein, and to whom it relates for purposes of providing notice,” the company said in a letter to victims.

read more

Cyberattack Disrupts North and Latin American Operations at Bridgestone Americas

September 2, 2025

Bridgestone Americas experienced a cyberattack in early September 2025 that disrupted operations at several of its manufacturing and retreading facilities. The attack halted or disrupted production at multiple facilities. At least two plants were identified; in Aiken County, South Carolina (U.S.) and a major Bridgestone facility in Joliette, Quebec (Canada). These sites paused normal operations while the incident was contained and IT systems were isolated. Employees at affected plants were either sent home or given optional work on preventive maintenance with pay during the outage. Overall multiple sites across North America and Latin America were affected, causing temporary operational suspension in several plants until systems were isolated and restored by mid‑September 2025.

No ransomware group has publicly claimed responsibility.

read more

Ransomware Attack at Cornwell Tools

December 12, 2024

Cornwell Quality Tools suffered a ransomware attack this past December and is now informing its 103,782 victims details of the hack.
The December 2024 data breach compromised Social Security numbers, medical info, and financial account numbers.
Ransomware group Cactus took credit for the attack in February 2025 and said it stole 4.6 TB of data. To prove its claim, Cactus posted sample images of what it said are documents from Cornwell. They include driver’s license scans, tax documents, and credit applications.
“On December 20, 2024, Cornwell became aware of unusual activity within its computer network and immediately took steps to secure its systems, engaging cybersecurity experts in the process,” said a letter to victims of the incident. According to its investigation, an unknown actor gained access to Cornwell’s network and potentially acquired certain files on or around December 12, 2024. Following a comprehensive review of the affected files, Cornwell determined that certain individuals’ personal information may have been involved in this incident. Cornwell then began working diligently to collect up-to-date mailing addresses in order to provide notification of the incident, which was completed on August 4, 2025.”

read more

Cyberattack at Corrugated Box Solution Provider, Amtech Software

March 11, 2025

Fort Washington, Pennsylvania-based Amtech Software, Inc. suffered a cyberattack in March where threat actors were able to make off with personally identifiable information.
“On or about April 7, 2025, Amtech identified suspicious activity on its computer network,” the company said in a letter to victims. “In response, Amtech took steps to secure the network and began a comprehensive investigation to determine what occurred.”
As it turned out, the investigation found attackers go on to the network between March 11 and April 7 and certain files ended up copied from the network as part of the hack.

read more

‘Malicious Encryption’ at Fire Protection Provider, Hiller

December 18, 2024

Mobile, Alabama-based fire protection products provider, the Hiller Companies LLC suffered what could be a ransomware attack it discovered this past June.
“On June 13, 2025, Hiller learned that some of your personal information may have ended up involved in a data security incident,” the company said in a notice to victims. “The incident related to a malicious encryption perpetrated by unknown actors, which resulted in certain files being copied from our network without authorization on or about December 18, 2024.
As a result of the attack, Hiller hired a team of outside cybersecurity experts to investigate the matter and help determine whether any sensitive data ended up included exfiltrated in the attack.

read more