Active Cyber Intrusion Disrupts Hasbro Operations for Weeks

Hasbro detected unauthorized network access on March 28 and took some systems offline to contain the intrusion. The company is running business continuity plans to keep orders and shipments moving, but these interim measures may last several weeks and cause delays. The attack likely involves data theft and possible ransomware, though Hasbro has not confirmed extortion or identified the threat actor. The ongoing nature of the intrusion means persistent access should be assumed until forensic analysis proves otherwise. This incident highlights the need for coordinated response across security, operations, legal, and communications teams to manage disruption, potential data compromise, and regulatory notifications. Standard patching or containment is insufficient; expect extended recovery and manual operational workarounds.

Part of the PlainSec briefing for 2026-04-02

Sources