Data Breaches

Hasbro Data Breach Exposed Employee Personal Information

A cyberattack caused disruptions at the toy and game giant earlier this year and the company is now disclosing a data breach.

Hasbro cyberattack

Toy and game giant Hasbro is notifying employees that their personal information may have been compromised in a data breach.

The notifications sent to affected individuals contain little detail, but they indicate that the exposed information, which varies by individual, may include names, email addresses, postal addresses, phone numbers, national ID numbers, and financial information. 

The information comes from notification letters that Hasbro submitted to the Massachusetts Attorney General’s Office. 

It’s unclear how many individuals are affected in total, but it’s likely hundreds or a few thousand. The Massachusetts notification says 436 residents are impacted and the company has roughly 4,600 employees worldwide, most in the United States, according to Revelio Labs data.

Data breach notifications do not appear to have been published on any other AG website at the time of writing.

The data breach may be related to the cyberattack that targeted Hasbro in late March. The company took some systems offline to respond to the attack, resulting in disruptions. 

Advertisement. Scroll to continue reading.

SecurityWeek asked Hasbro to confirm whether the new breach notification is connected to the March cyberattack. The company did not directly answer that question.

A Hasbro spokesperson said the company identified a security incident involving its network earlier this year and “took immediate action to address the incident,” including launching an investigation with outside cybersecurity experts to determine what happened and what information may have been accessed.

The investigation determined that some current and former employees’ personal information may have been accessed during the incident. Hasbro said it is “not aware of any misuse of personal data” and has no indication the information will be misused.

Out of an abundance of caution, the company said it is offering identity protection services through a third-party provider to those affected.

No known cybercrime group has listed Hasbro on its leak website.

Related: ATF Confirms Cyber Incident After Ransomware Group Claims Attack

Related: Sensitive Information Exposed in Nutex Health Data Breach

Related: Personal Information Exposed in Apollo Global Data Breach

Related Content

Data Breaches

Nutex Health has informed the SEC that it recently detected unauthorized access and data exfiltration.

Data Breaches

The private equity firm appears to have been targeted as part of a campaign focusing on major financial companies.

Data Breaches

The cybercrime gang has listed major companies such as Shell, Philips, Fiserv, Zebra, Mindray, and Largan Precision.

Data Breaches

The data breach was initially believed to affect roughly 350,000 people, but the HHS breach tracker shows a far bigger impact.

Data Breaches

Hackers stole names, addresses, phone numbers, Social Security numbers, and financial information from a third-party platform.

Data Breaches

Hackers used compromised credentials to access enterprise and personal tax-related data.

Data Breaches

Hackers exploited a vulnerability in the order-tracking function of a plugin to access SafePal customer information.

Data Breaches

The hackers published the allegedly stolen information, including names, addresses, email addresses, and phone numbers.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version