Concur News
  • Home
  • India
  • Startup
  • Regulation
  • Interview
  • Press Release
  • Login
August 18, 2025
No Result
View All Result
Concur News

Home » Kellogg Co. Reports Data Breach Due to 2024 Cleo Software Attack

Kellogg Co. Reports Data Breach Due to 2024 Cleo Software Attack

May 28, 2025
in Global, News, Privacy, Trending
Reading Time: 2 mins read
kellogs data breach
Share on LinkedinShare on Whatsapp

WK Kellogg Co., a U.S. food company, announced a data breach after cyber attackers targeted Cleo software. Cleo is used to transfer files securely, but hackers exploited two security flaws to steal data. These flaws, known as CVE-2024-50623 and CVE-2024-55956, allowed hackers to breach servers.

Kellogg learned about the data breach on February 27, 2025. The company started investigating right away. They contacted Cleo, and Cleo confirmed that an unauthorized person accessed the servers on December 7, 2024. These servers were used to transfer employee files to HR vendors.

About WK Kellogg Co.

WK Kellogg Co. is a U.S. food company that split from Kellogg’s in October 2023. The company makes popular cereals like Froot Loops, Corn Flakes, and Frosted Flakes. They have an annual revenue of $2.7 billion.

Consent Foundation

Although the company didn’t mention the Clop ransomware gang directly, the attack coincided with a wave of similar attacks in December 2024. The gang later listed WK Kellogg on their data leak website.

What Data Was Exposed?

The exposed data included names and social security numbers. To help those affected, WK Kellogg offered free identity monitoring and fraud protection for one year through a service called Kroll. They also advised impacted individuals to place fraud alerts or a security freeze on their credit.

Kellogg worked closely with Cleo to understand what went wrong. Cleo has since strengthened its security to prevent similar issues.

More Companies Affected by Cleo Attack

The Clop ransomware gang recently targeted WK Kellogg in the Cleo zero-day attacks. The gang continues to reveal more victims and stolen data months after the attack. On March 18, 2025, Western Alliance Bank informed Approx. 22,000 customers that hackers stole their personal data in an October 2024 data breach involving Cleo.

This case highlights the importance of strong cybersecurity and the risks of relying on third-party software for sensitive data transfers.

Also read : TikTok’s Parent Company Faces Huge Fine for Sending European User Data to China

Tags: DataData breachData privacyHack

Related Posts

Chief Secretary reviews steps to safeguard Jammu & Kashmir’s digital assets
India

Chief Secretary reviews steps to safeguard Jammu & Kashmir’s digital assets

August 14, 2025
WhatsApp Says Sharing Generic User Preferences Doesn’t Violate Privacy
Global

WhatsApp Says Sharing Generic User Preferences Doesn’t Violate Privacy

August 14, 2025
How the CCI Considers Data Access Crucial for Competition in Digital Markets
India

How the CCI Considers Data Access Crucial for Competition in Digital Markets

August 14, 2025
Quick Heal Signs MoU with BHASHINI to Bridge Cybersecurity and Privacy Language Gaps
India

Quick Heal Signs MoU with BHASHINI to Bridge Cybersecurity and Privacy Language Gaps

August 13, 2025

RECOMMENDED NEWS

Data Breach at vORBO Portal Uncovers Major Vulnerability

Data Breach at vORBO Portal Uncovers Major Vulnerability

2 weeks ago
IPhone Users Restricted from Accessing Apple Intelligence Features on WhatsApp, Instagram

IPhone Users Restricted from Accessing Apple Intelligence Features on WhatsApp, Instagram

4 months ago
Landmark Admin

Landmark Admin Data Breach Now Affects 1.6 Million Poeple

4 months ago
Privacy Breach Tool Of Canada

Privacy Breach Tool Of Canada

5 months ago

BROWSE BY TOPICS

AI AI in education AI Privacy banks Children privacy Compliance Consent consent managers Cross-Border Cybercrime Cyber security Data Data breach Data leak Data privacy data privacy in education Data Protection Data security Data Violation Digital DPDP DPDPA DPDP Act EU Fines GDPR google Hack Hacked Interview Investigation Law Meity penalty Personal data Press Release Privacy privacy rights RBI SPAM Tech giants Technology TRAI Training Trending

701, The Capital, BKC(E), Mumbai, India

Follow us on social media:

Categories

Categories Layout
  • Africa
  • America
  • India
  • Asia
  • Europe
  • Japan
  • Business
  • Events
  • Regulation
  • Law
  • News
  • Privacy
  • Startup
  • Technology
Categories Layout
  • Apps
  • Cybercrime
  • Data
  • Data Breach
  • Data Privacy
  • Data Protection
  • Digital
  • FBI
  • Investment
  • Law
  • Privacy
  • Tech Giants
  • DPDP
  • DPDPA

Harmonize Data Compliance

Footer with Animated Button
Effortlessly align your data compliance with Concur, ensuring seamless integration and robust adherence to regulatory standards.
BOOK A DEMO
  • About
  • Advertise
  • Careers
  • Home
  • Demo

© 2025 Concur - consent manager

Welcome Back!

OR

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • News
  • Business

© 2025 Concur - consent manager