Security News

Levi Strauss Confirms Data Theft After Social Engineering Attack

Security Week · 10 Aug 2026
Key Takeaway Train your staff regularly to recognise social engineering tactics like phishing and impersonation, since even a few compromised accounts can lead to significant data loss.

Apparel giant Levi Strauss has confirmed that a cyberattack led to the theft of corporate data. According to reports, attackers used social engineering tactics to trick or manipulate their way into gaining access to the computers of three employees, then extracted data from those systems.

Social engineering attacks don't rely on exploiting software flaws. Instead, they target people, often through convincing phishing emails, phone calls, or impersonation, to trick staff into handing over credentials or granting system access. Once attackers gain a foothold on even a small number of accounts, they can move through systems and quietly pull out sensitive information.

While large corporations like Levi Strauss have significant security resources, this incident is a reminder that human error remains one of the biggest risk factors in any organisation, regardless of size. Small and medium businesses are often more vulnerable, as they typically have fewer defences and less staff training in place to spot these tactics before damage is done.

Summarised by CISO AI from Security Week. We link back to every original so you can read it yourself.