On February 19, 2021, Kroger Co. (Kroger) confirmed that the company was affected by an extensive Accellion data breach. Accellion is a California-based, third-party vendor that provides file-transfer services.
The grocery and pharmacy chain giant was notified of the cyberattack on January 23, 2021. The company claims to have immediately discontinued the use of Accellion’s products and services and reported the incident to law enforcement.
Kroger is in the process of notifying affected individuals. While they continue to investigate the cyberattack, they have identified the following affected parties so far:
- Kroger Health and Money Services users (pharmacy, health clinic, and money service customers)
- Current employees
- Some former employees
- Names
- Phone numbers
- Dates of birth
- Home addresses
- Medical history
- Email addresses
- Money service records
- Social Security numbers
- Prescription information
- Health insurance information
NOTICE: A legal complaint has been filed against Kroger regarding this data breach. If you received a NOTICE OF DATA BREACH, you may be a class member.