Speciality Bakery Chain Hacked 

The Krispy Kreme Doughnut chain has reported that it has been hacked by a cyber attack that disrupted its online systems. 

Numerous US customers were unable to place online orders following the attack, which occurred at the end of November 2024, and has only now been disclosed. 

Krispy Kreme revealed that they were attacked in  a regulatory filing with the US Securities and Exchanges Commission (SEC), in which it said the incident had a serious impact on the firm's business operations.

"We're experiencing certain operational disruptions due to a cybersecurity incident, including with online ordering in parts of the United States," reads a message on the Krispy Kreme website. "We know this is an inconvenience and are working diligently to resolve the issue." To date, no criminal groups have claimed responsibility for the hack.

Krispy Kreme stated in its SEC filing that it has cyber security insurance, which it said it hopes will reduce some of the costs resulting from the breach.

Expected costs include lost revenue from online sales, costs for cybersecurity experts and any system restoration costs. Their insurance "is expected to offset a portion of the costs of the incident," the company said.
Shares of the company were down about 2% recently and are down 33% so far in 2024.

Krispy Kreme is a national retail chain in the US and has more than 1,400 shops worldwide, including 120 locations in the UK where it is  largest speciality doughnut retailer in the country

SEC   |   BitDefender   |    TechRadar   |    BBC   |   TEISS   |   Guardian   |  

Image: @krispykreme

You Might Also Read: 

E-Commerce Site Exposed Children Worldwide:


If you like this website and use the comprehensive 6,500-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

 

 

« What Security Features Are Essential In BPM Software To Protect Sensitive Data?
Chinese Firm Sanctioned For Potentially Lethal Cyber Attacks »

ManageEngine
CyberSecurity Jobsite
Check Point

Directory of Suppliers

ZenGRC

ZenGRC

ZenGRC (formerly Reciprocity) is a leader in the GRC SaaS landscape, offering robust and intuitive products designed to make compliance straightforward and efficient.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

ManageEngine

ManageEngine

As the IT management division of Zoho Corporation, ManageEngine prioritizes flexible solutions that work for all businesses, regardless of size or budget.

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

Cypress Semiconductor

Cypress Semiconductor

Cypress is a semiconductor design and manufacturing company providing embedded devices for secure IoT applications.

Casaba Security

Casaba Security

Casaba are specialists in software security providing managed Software Development Lifecycle services as well as products for security testing.

Sparta Consulting

Sparta Consulting

Sparta Consulting is an information management and business development full service provider.

ActiveCyber

ActiveCyber

ActiveCyber is a source for news, reviews, learning, and technological innovation in the active cyber defense industry.

Cienaga Systems

Cienaga Systems

Cienaga Systems is a leader in autonomous cyber threat hunting technology.

Auxilium Cyber Security

Auxilium Cyber Security

Auxilium Cyber Security is independent information security consultancy company providing cyber security services tailored to meet the evolving needs of organizations worldwide.

Flipside

Flipside

Information Security training provider specialized in personalized training and security awareness campaigns.

Variti

Variti

Variti Intelligent Active Bot Protection technology — traffic analysis, detection and stopping of malicious bots in real-time and effective response to DDoS attacks.

SimSpace

SimSpace

SimSpace is the visionary yet practical platform for measuring how your security system responds under actual, sustained attack.

Emagined Security

Emagined Security

Emagined Security is a leading provider of professional services for Information Security and Compliance solutions.

Pivot Point Security

Pivot Point Security

Pivot Point Security is a trusted leader in information security consulting. We help clients master their information security management systems.

BastionZero

BastionZero

BastionZero is leveraging cryptography to reimagine the tools used to manage remote access to servers, containers, clusters, applications and databases across cloud and on-prem environments.

GTT Communications

GTT Communications

GTT are a global network provider that serves thousands of multinational and national enterprise, government and carrier customers with a portfolio of advanced connectivity and security services.

iConnect IT Business Solutions DMCC

iConnect IT Business Solutions DMCC

iConnect is a trusted IT Solutions and Technology Services company, proudly serving clients across the Middle East and Africa.

Open Cybersecurity Alliance (OCA)

Open Cybersecurity Alliance (OCA)

OCA is building an open ecosystems where cybersecurity products interoperate without the need for customized integrations. We're making standards-based interoperable cybersecurity a reality.