Breaches · 167 days ago
Hasbro detected unauthorized network access on March 28 and took some systems offline to contain the intrusion. The company is running business continuity plans to keep orders and shipments moving, but these interim measures may last several weeks and cause delays.
The attack likely involves data theft and possible ransomware, though Hasbro has not confirmed extortion or identified the threat actor. The ongoing nature of the intrusion means persistent access should be assumed until forensic analysis proves otherwise.
This incident highlights the need for coordinated response across security, operations, legal, and communications teams to manage disruption, potential data compromise, and regulatory notifications. Standard patching or containment is insufficient; expect extended recovery and manual operational workarounds.
5 sources covering this story
Cybercriminals take aim at Hasbro, weeks of recovery ahead - Help Net Security
Hasbro confirmed a cyberattack after detecting unauthorized network access, taking systems offline and launching an investigation.
The Record from Recorded Future
Hasbro takes some systems offline after cybersecurity incident
The company filed a notice with the Securities Exchange Commission (SEC) on Wednesday warning investors that its IT team discovered unauthorized access on March 28.
Toy Giant Hasbro Hit by Cyberattack
The company is investigating the full scope of the incident, including whether any files have been compromised.
Hasbro says it was hacked, and may take 'several weeks' to recover | TechCrunch
The American toy-making giant noted that it was continuing to "implement measures to secure its business operations," suggesting that the hackers may still be in the company's systems.
Cyberattack hits Hasbro, impacting orders and shipping
The major U.S. toymaker and entertainment company is still working to assess if company data was stolen in the attack.
Part of the PlainSec briefing for 2026-04-02