Sysco Corp.: Sysco Corp Data Breach Exposes Social Security Numbers

Sysco Corp.: Sysco Corp Data Breach Exposes Social Security Numbers

Sysco Corp. Confirms Data Breach Exposing Personal Information in Second Major Cyberattack of 2026

Sysco Corp., the world’s largest foodservice distributor, has notified individuals of a cyberattack that compromised personal data, marking the company’s second major breach in 2026. The incident was first detected on April 23, 2026, when unauthorized activity was identified in parts of Sysco’s computer systems. After containing the threat, the company launched an investigation and discovered on May 5, 2026, that an unauthorized third party had accessed certain files. A subsequent review concluded on June 25, 2026, that these files contained personal information.

The breach was publicly linked to the threat actor group ShinyHunters, which claimed responsibility on June 14, 2026, via a post on the Tor network. The group alleged it had exfiltrated over 61 million Salesforce records, including customer and employee data, personally identifiable information (PII), and internal corporate documents. ShinyHunters threatened to publish the data within three days, though it remains unclear whether the full dataset was released.

The exposed information included names and Social Security numbers, though the total number of affected individuals has not been disclosed. Sysco reported the breach to the Massachusetts Office of Consumer Affairs and Business Regulation and the Vermont Attorney General, and began mailing notification letters to impacted individuals on July 22, 2026.

This incident follows a prior attack on May 6, 2026, when Sysco was targeted by the Qilin ransomware group, just weeks before the current breach was detected. In response to the latest compromise, Sysco is offering 24 months of complimentary identity theft protection and credit monitoring through Experian IdentityWorks, with enrollment required by October 31, 2026. Affected individuals may contact Sysco’s dedicated support line for assistance.

Source: https://www.claimdepot.com/data-breach/sysco-2026

Sysco cybersecurity rating report: https://www.rankiteo.com/company/sysco

"id": "SYS1785508066",
"linkid": "sysco",
"type": "Breach",
"date": "4/2026",
"severity": "100",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 'Undisclosed (potentially '
                                              'millions)',
                        'industry': 'Foodservice Distribution',
                        'name': 'Sysco Corp.',
                        'size': 'Large (world’s largest foodservice '
                                'distributor)',
                        'type': 'Corporation'}],
 'customer_advisories': 'Notification letters mailed to impacted individuals '
                        'on July 22, 2026; enrollment in identity theft '
                        'protection required by October 31, 2026',
 'data_breach': {'data_exfiltration': 'Yes (claimed by ShinyHunters)',
                 'number_of_records_exposed': 'Over 61 million Salesforce '
                                              'records',
                 'personally_identifiable_information': ['Names',
                                                         'Social Security '
                                                         'numbers'],
                 'sensitivity_of_data': 'High (Social Security numbers, '
                                        'customer and employee data)',
                 'type_of_data_compromised': ['Personally Identifiable '
                                              'Information (PII)',
                                              'Internal corporate documents']},
 'date_detected': '2026-04-23',
 'date_publicly_disclosed': '2026-07-22',
 'date_resolved': '2026-06-25',
 'description': 'Sysco Corp., the world’s largest foodservice distributor, has '
                'notified individuals of a cyberattack that compromised '
                'personal data, marking the company’s second major breach in '
                '2026. The incident involved unauthorized access to files '
                'containing personal information, including names and Social '
                'Security numbers.',
 'impact': {'brand_reputation_impact': 'Likely significant due to second major '
                                       'breach in 2026',
            'data_compromised': 'Personal information, including names and '
                                'Social Security numbers',
            'identity_theft_risk': 'High (Social Security numbers exposed)',
            'systems_affected': 'Salesforce records, internal corporate '
                                'systems'},
 'investigation_status': 'Concluded',
 'motivation': 'Data Exfiltration',
 'ransomware': {'data_exfiltration': 'Yes'},
 'references': [{'date_accessed': '2026-06-14',
                 'source': 'Threat actor claim (ShinyHunters)',
                 'url': 'Tor network post'}],
 'regulatory_compliance': {'regulatory_notifications': ['Massachusetts Office '
                                                        'of Consumer Affairs '
                                                        'and Business '
                                                        'Regulation',
                                                        'Vermont Attorney '
                                                        'General']},
 'response': {'communication_strategy': 'Notification letters mailed to '
                                        'impacted individuals, regulatory '
                                        'disclosures',
              'containment_measures': 'Contained unauthorized activity in '
                                      'computer systems',
              'third_party_assistance': 'Experian IdentityWorks (identity '
                                        'theft protection and credit '
                                        'monitoring)'},
 'threat_actor': 'ShinyHunters',
 'title': 'Sysco Corp. Data Breach Exposing Personal Information',
 'type': 'Data Breach'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.