// UNCLASSIFIED // CLEARED FOR PUBLIC RELEASE //
FILE BRC-newsDTG 0600Z
ColdRecon / Breach Radar / Levi Strauss & Co.
Breach Record

Levi Strauss & Co.

DISCLOSED 2026-08-10 · PHISHING

Levi Strauss & Co. experienced a cyberattack that compromised three company-issued computers through social engineering targeting employees. The incident exposed corporate data and was disclosed in an SEC filing. No software vulnerabilities were exploited.

The record

What we know

Disclosed
2026-08-10
Attack vector
Phishing
Sector
Apparel
Data classes exposed
corporate data
ENDPOINT INVOLVED
ColdRecon assessment

Could a positive-security control have prevented this?

Verdict · unclear · opinion

The attack relied on social engineering to compromise endpoints, but without details on the specific actions taken, it is unclear if a positive-security model would have prevented unauthorized changes.

Our assessments are opinion, grounded in the cited public facts. Read them critically.

Sources

Cited reporting

Similar vector · recent

Other phishing breaches on file

This page is the permanent ColdRecon entry for the Levi Strauss & Co. disclosure. It updates if new public reporting emerges. All tracked breaches →

Levi Strauss & Co. just lived through this. Your next prospect doesn't have to.

ColdRecon turns every disclosed breach into a daily intelligence brief from the seller's seat — normalized to the factors that move a deal, written in the Handler's voice. Request clearance and the first lands tomorrow at 0600.

Request Clearance →