Next Level Apparel ("NLA") suffered from a phishing email incident that involved a small number of email accounts in its computing environment.
The phishing email event led to unlawful access to data from some email accounts, including names with Social Security numbers, financial/checking account numbers, payment card details, driver's license numbers, and restricted medical/health information.
NLA conducted an investigation and released this notice to inform individuals of this incident and provide some recommendations on ways to protect personal information.
NLA was putting additional security measures in place to assist stop something similar from happening again.
TPRM report: https://scoringcyber.rankiteo.com/company/next-level-apparel
"id": "nex1825211122",
"linkid": "next-level-apparel",
"type": "Data Leak",
"date": "10/2021",
"severity": "60",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'industry': 'Apparel',
'name': 'Next Level Apparel',
'type': 'Organization'}],
'attack_vector': 'Email',
'data_breach': {'personally_identifiable_information': ['names',
'Social Security '
'numbers',
"driver's license "
'numbers'],
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['names',
'Social Security numbers',
'financial/checking account '
'numbers',
'payment card details',
"driver's license numbers",
'restricted medical/health '
'information']},
'description': 'Next Level Apparel (NLA) suffered from a phishing email '
'incident that involved a small number of email accounts in '
'its computing environment. The phishing email event led to '
'unlawful access to data from some email accounts, including '
'names with Social Security numbers, financial/checking '
"account numbers, payment card details, driver's license "
'numbers, and restricted medical/health information.',
'impact': {'data_compromised': ['names',
'Social Security numbers',
'financial/checking account numbers',
'payment card details',
"driver's license numbers",
'restricted medical/health information'],
'systems_affected': ['email accounts']},
'initial_access_broker': {'entry_point': 'Phishing Email'},
'recommendations': 'NLA was putting additional security measures in place to '
'assist stop something similar from happening again.',
'response': {'communication_strategy': 'Released a notice to inform '
'individuals of the incident and '
'provide recommendations on ways to '
'protect personal information.'},
'title': 'Next Level Apparel Phishing Email Incident',
'type': 'Phishing'}