MIT TRACE

MIT CTL Logo
Back to Main Dashboard

Krispy Kreme cyberattack disrupts U.S. online ordering

Krispy Kreme detected unauthorized activity on 29/11/2024 affecting part of its IT environment. Shops remained open and partner deliveries continued, but online ordering was disrupted in parts of the United States, causing lost digital sales and a direct interruption to the company's e-commerce order-processing flow. The Play ransomware group later claimed responsibility, but Krispy Kreme did not establish ransomware as the confirmed mechanism in its initial filing.

70

Estimated severity

70 / 100

94

Source reliability

94 / 100

Approximate Date

29/11/2024

Targeted Company

KRISPY KREME

Targeted Company Supply Chain Impact

  1. Distribution & Fulfillment

  2. Procurement & Sourcing

  3. Production & Manufacturing

  4. Sales (Retail & Ecommerce)

  5. Warehousing

  6. Service Delivery

  7. Unrecognized Impact

Supply Chain Relations

No information

Geographic Impact

Country Targeted Company

United States

USA

Other Affected Countries

No other affected countries reported

Target country

United States

Affected countries

United States

Impacted regions

No information

Operational Impact

Duration

No information

Financial impact (USD M)

No information

Impact types

Order processing disruptionService unavailability

Affected sectors

Food & BeverageRetail

Affected departments

Information TechnologySalesOrder Management

Attack Profile

Attack types

Unauthorized access

Attributed threat actors

PLAY

Sources

Please rotate your phone

MIT TRACE is optimized for landscape orientation on mobile.