The Hershey Company Details

    Organization Logo

    The Hershey Company

    Hershey, Pennsylvania16100 employees • Manufacturing

    https://www.thehersheycompany.com

    Industry

    Manufacturing

    Security Incidents

    1

    The Hershey Company, commonly known as Hershey, is an American multinational company and one of the largest chocolate manufacturers in the world. Founded by Milton S. Hershey in 1894 as the Hershey Chocolate Company, it produces a variety of chocolate and chocolate-related confections, including its signature Hershey's Milk Chocolate Bar and Hershey's Kisses. Over the years, Hershey has expanded its product line and acquired other companies, becoming a significant player in the snack and confectionery industry.

    The company's headquarters is located in Hershey, Pennsylvania, and as of the late...
    Show more

    Security Incidents

    The Hershey Company Breach of Sept 2023
    Severity Score
    Moderate to Significant

    Type

    Phishing Attack

    Summary

    In early September, The Hershey Company experienced a data breach where hackers accessed several of the company's email accounts through a phishing campaign, potentially affecting over 2,200 individuals. The breach allowed attackers to access sensitive information, including names, health and medical details, digital signatures, contact details, driver’s license numbers, credit card information, and credentials for online and financial accounts. Hershey reported no evidence that the stolen data was acquired or misused. The company promptly detected the breach and has been collaborating with se...
    Show more

    Severity

    The recent cyber security incident at The Hershey Company involved a phishing campaign that compromised a limited number of email accounts, potentially affecting more than 2,200 individuals. Although the breach was promptly detected and there is no evidence that the stolen information—which could include sensitive personal and financial data—was misused, the exposure of such data is nonetheless concerning. Given that the attack had a limited scope but involved potentially sensitive information and considering Hershey's swift response and ongoing efforts to enhance security measures, this incid...
    Show more

    Impact

    The recent cyber incident targeting Hershey resulted in a data breach mainly through a phishing campaign. Hackers accessed a limited number of email accounts, exposing personal details of over 2,200 individuals. The spectrum of compromised data varies per person but includes sensitive information like names, health records, digital signatures, contact details, driver's license numbers, credit card numbers, and financial credentials. Fortunately, there is no evidence that the stolen data has been misused. Hershey has already taken steps to secure their systems, including enforcing password chan...
    Show more