Hasbro disclosed that it suffered a cyberattack involving unauthorized access, detected on March 28, and responded by taking some systems offline to contain the intrusion. The company said it activated incident response procedures, brought in third-party cybersecurity specialists, and is still investigating the scope of the breach and what data may have been affected.
The incident has disrupted parts of Hasbro's operations, including its ability to process orders and ship products, forcing the company to rely on business continuity measures while remediation continues. Hasbro warned that these interim arrangements and related delays could remain in place for several weeks, and said it will issue notifications if the ongoing review determines that legally protected data was compromised; no threat actor had publicly claimed responsibility at the time of disclosure.

See attribution, scope, and your downstream exposure.
3 events from the most recent confirmed update back to the earliest known activity.
On 2026-04-01, Hasbro publicly disclosed the incident in an SEC filing, said business continuity measures were in place, and warned that delays and interim operating measures could continue for several weeks while the investigation into potentially affected data remained ongoing.
After detecting the intrusion, Hasbro proactively took certain systems offline as a containment measure. The disruption affected parts of its operations, including order processing and product shipping.
On 2026-03-28, Hasbro discovered unauthorized access in a cyberattack, activated its incident response procedures, and engaged third-party cybersecurity professionals to investigate and remediate the intrusion.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
11 references tracked. Mallory keeps watching after this page renders.
boingboing.net
Open sourcedatabreaches.net
Open sourcesecurityaffairs.com
Open sourcescworld.com
Open sourcesec.gov
Open sourcedarkwebinformer.com
Open sourcehelpnetsecurity.com
Open sourcetherecord.media
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.