The California Office of the Attorney General reported a data breach involving Garden of Life, LLC on January 17, 2025. The breach occurred on July 8, 2024, due to unauthorized access to a vendor's software that collects payment information, potentially affecting personal information such as names, addresses, email addresses, and credit card data.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-597503
TPRM report: https://www.rankiteo.com/company/garden-of-life
"id": "gar513072525",
"linkid": "garden-of-life",
"type": "Breach",
"date": "7/2024",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'name': 'Garden of Life, LLC', 'type': 'Company'}],
'attack_vector': 'Unauthorized Access',
'data_breach': {'personally_identifiable_information': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['names',
'addresses',
'email addresses',
'credit card data']},
'date_detected': '2025-01-17',
'date_publicly_disclosed': '2025-01-17',
'description': 'The California Office of the Attorney General reported a data '
'breach involving Garden of Life, LLC on January 17, 2025. The '
'breach occurred on July 8, 2024, due to unauthorized access '
"to a vendor's software that collects payment information, "
'potentially affecting personal information such as names, '
'addresses, email addresses, and credit card data.',
'impact': {'data_compromised': ['names',
'addresses',
'email addresses',
'credit card data'],
'payment_information_risk': True},
'initial_access_broker': {'entry_point': 'Vendor Software'},
'references': [{'date_accessed': '2025-01-17',
'source': 'California Office of the Attorney General'}],
'title': 'Data Breach at Garden of Life, LLC',
'type': 'Data Breach',
'vulnerability_exploited': 'Vendor Software'}