Bose Ransomware Attack Exposed Employees’ Data Including Social Security Number, Company Discloses

Bose initiated incident response protocols to restore the impacted systems.

Advertisement
By Jasmin Jose | Updated: 26 May 2021 14:40 IST
Highlights
  • Bose offered 12 months of identity protection services to the employees
  • Bose said the threat actors interacted with a limited set of folders
  • Colonial Pipeline was also forced to halt its operations

Upon detecting the breach, Bose employed its technical team to contain the incident

Bose disclosed that the US-based company has been subject to a data breach following a ransomware attack in early March. Some of the employees' information was accessed by the attackers. The premium audio equipment maker filed a breach notification letter with New Hampshire's Office of the Attorney General around mid-May. Upon discovering the breach, the company initiated incident response protocols to restore the impacted systems. Bose also took a series of measures to protect itself from future attacks. Another ransomware attack on Colonial Pipeline had recently forced the shutdown of the largest oil pipeline in the eastern US earlier this month.

According to a breach notification letter from the company, Bose first discovered the attack on March 7. The company's data from internal administrative human resources files relating to six former New Hampshire employees were accessed and potentially exfiltrated. The accessed information included the employees' name, Social Security Number, and compensation-related information.

Upon detecting the breach, Bose employed its technical team to contain the incident. The company also worked with external forensics providers to investigate the attack. Bose said in the letter that the threat actors interacted with a limited set of folders and the systems have been restored.

Advertisement

Bose offered 12 months of identity protection services to the affected employees.

Advertisement

To defend itself from future cyberattacks, Bose detailed the following measures in its letter:

  • Enhanced malware/ ransomware protection on endpoints and servers to further enhance our protection against future malware/ ransomware attacks.
  • Performed detailed forensics analysis on impacted server to analyse the impact of the malware/ ransomware.
  • Blocked the malicious files used during the attack on endpoints to prevent further spread of the malware or data exfiltration attempt.
  • Enhanced monitoring and logging to identify any future actions by the threat actor or similar types of attacks.
  • Blocked newly identified malicious sites and IPs linked to this threat actor on external firewalls to prevent potential exfiltration.
  • Changed passwords for all end-users and privileged users.
  • Changed access keys for all service accounts.

The largest fuel network in the eastern US, Colonial Pipeline, was also forced to halt its operation earlier this month following a ransomware attack. The company paid $4.4 million (roughly Rs. 32.19 crores) in ransom to hackers following the attack.


It's Google I/O time this week on Orbital, the Gadgets 360 podcast, as we discuss Android 12, Wear OS, and more. Later (starting at 27:29), we jump over to Army of the Dead, Zack Snyder's Netflix zombie heist movie. Orbital is available on Apple Podcasts, Google Podcasts, Spotify, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Samsung Galaxy S26 Series Specifications Leaked in Full
  2. Apple Tipped to Launch iPhone 18 Pro in Three Entirely New Colours
  3. Lava Agni 4 Teased With Dual Rear Camera System Ahead of Launch
  1. Lava Agni 4 Teased to Come With Dual Rear Camera System; Certification Site Listing Reveals Battery Specifications
  2. Microsoft Announces Latest Windows 11 Insider Preview Build With Ask Copilot in Taskbar, Shared Audio Feature
  3. Samsung Galaxy S26 Series Specifications Leaked in Full; Major Camera Upgrades Tipped
  4. iPhone 18 Pro Tipped to Launch in Burgundy, Coffee, and Other New Colour Options
  5. SpaceX Revises Artemis III Moon Mission with Simplified Starship Design
  6. Rare ‘Second-Generation’ Black Holes Detected, Proving Einstein Right Again
  7. Starlink Hiring for Payments, Tax and Accounting Roles in Bengaluru as Firm Prepares for Launch in India
  8. Google's 'Min Mode' for Always-on Display Mode Spotted in Development on Android 17: Report
  9. OpenAI Upgrades Sora App With Character Cameos, Video Stitching and Leaderboard
  10. Samsung's AI-Powered Priority Notifications Spotted in New One UI 8.5 Leak
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.