Panera Bread Details

    Organization Logo

    Panera Bread

    Sunset Hills, Missouri140000 employees • Accommodation and Food Services

    Industry

    Accommodation and Food Services

    Security Incidents

    1

    Security Incidents

    Panera Bread Breach of Apr 2024
    Severity Score
    Significant to High

    Type

    Ransomware Attack

    Summary

    Panera Bread experienced a significant cybersecurity incident due to a ransomware attack that led to a week-long outage beginning on March 22. The ransomware encrypted many of the company's virtual machines, severely disrupting access to critical systems including internal IT infrastructure, phones, point of sale systems, website, and mobile applications. The outage forced stores to accept only cash payments and prevented employees from accessing work schedules, while customers were unable to redeem points in the rewards program. Despite some systems being restored via backups, the identity of...
    Show more

    Severity

    The recent ransomware attack on Panera Bread had a significant impact on their operations, causing a week-long outage that encrypted many of their virtual machines. This disruption affected various aspects including internal IT systems, phones, point of sale systems, the website, and mobile apps, essentially forcing stores to accept cash only and halting the reward program for loyal customers. Additionally, sensitive employee data was compromised, leading to concerns about the company's transparency and the effectiveness of their cybersecurity measures. Given the widespread operational disrupt...
    Show more

    Impact

    The recent ransomware attack on Panera Bread led to a significant disruption, taking down several of the company's critical systems for a week. The attack encrypted numerous virtual machines, affecting internal IT systems, phones, point of sale systems, the website, and mobile apps, forcing stores to accept only cash payments. Sensitive personal information, including employee names and Social Security numbers, was stolen during the breach, although there is no current indication that this data has been made public. Additionally, the company’s reward program and other customer-facing services ...
    Show more