A Cyber Bleach Hit

12198530279?profile=RESIZE_400xClorox announced a cybersecurity incident this week that forced it to take several systems offline.  The company, which reported more than $7 billion in earnings in 2022 through its namesake cleaning product and several others like Pine Sol, Burt’s Bees and more, reported the incident in regulatory filings with the US Securities and Exchange Commission (SEC) on 14 August.  “The Clorox Company has identified unauthorized activity on some of its Information Technology (IT) systems.  After becoming aware of the activity, the Company began taking steps to stop and remediate the activity, including taking certain systems offline,” the company said in an 8-K filing.[1]

“The Company is working diligently to respond to and address this issue, and is also coordinating with law enforcement.  To the extent possible, and in line with its business continuity plans, Clorox has implemented workarounds for certain offline operations in order to continue servicing its customers.”

The company warned that the cyber incident is causing “disruption to parts of the Company’s business operations” and has forced them to hire a cybersecurity firm to help with the recovery.  Their investigation into the incident is “ongoing and is in its early stages.”  Clorox did not immediately respond to requests for comment.[2]

In its annual 10-K report filed with the SEC last week, the company warned that its increasing reliance on an array of technology left it exposed to potential disruptions caused by cyberattacks.

Both its informational and operational technology systems may be “vulnerable to …ransomware, unauthorized access attempts, business email compromise, cyber extortion, denial of service attacks, phishing, social engineering, hacking and other cyberattacks attempting to exploit vulnerabilities,” it said.

The company noted it has seen “an increase in the number of such attacks” since shifting to a remote work model. 

Manufacturing companies continue to face an endless barrage of attacks, with dozens of high-profile corporations announcing incidents in recent weeks including mattress giant Tempur Sealy.

Researchers at Akamai said last week they saw a 42% increase in total manufacturing industry victims between Q4 2021 and Q4 2022, outpacing all other industries. Comparitech said based on their data, the 478 ransomware attacks on manufacturing companies from 2018 to July 2023 caused an estimated $46.2 billion in losses from downtime.

This article is presented at no charge for educational and informational purposes only.

Red Sky Alliance is a Cyber Threat Analysis and Intelligence Service organization.  For questions, comments, or assistance, please get in touch with the office directly at 1-844-492-7225, or feedback@redskyalliance.com

Weekly Cyber Intelligence Briefings:

Reporting:    https://www.redskyalliance.org/
Website:       https://www.redskyalliance.com/
LinkedIn:      https://www.linkedin.com/company/64265941

Weekly Cyber Intelligence Briefings:

REDSHORTS - Weekly Cyber Intelligence Briefings

https://attendee.gotowebinar.com/register/5993554863383553632  

[1] https://therecord.media/clorox-takes-servers-offline-after-cyber-incident

[2] https://www.usnews.com/news/technology/articles/2023-08-14/clorox-says-certain-business-operations-disrupted-in-cyber-attack

E-mail me when people leave their comments –

You need to be a member of Red Sky Alliance to add comments!