US retailer Kmart breached in cyber attack

Edward Kost
Edward Kost
December 4, 2020

US retailer Kmart is the latest victim of an Egregor ransomware attack. The cybercriminals breached the retail giant’s back-end servers and encrypted the accessed sensitive data.

Staff became aware of the breach when their internal employee portal 88sears failed to load due to a server error.


kmart ransomware attack
Kmart internal server error during ransomware attack - source: bleepingcomputer.com

Egregor has claimed responsibility for the attack in their ransom note. The cybercriminal group adopts a double-extortion model to successfully convince victims to pay their ransom price. Breached sensitive data is continuously published onto the dark web and exposed to other criminals on the network. This process does not stop until the ransom price is paid.

Kmart is yet to confirm the details of the breached data.

This event is particularly troublesome to the already struggling retailer on the cusp of a busy spending season.

How secure is 88 Sears?

88Sears is the HR Employee Portal for Sears & Kmart associates
  • Check icon
    View our free preliminary report on 88 Sears’s security posture
  • Check icon
    13 risk factors, including email security, SSL, DNS health, open ports and common vulnerabilities
http://88sears.com
Security ratings
Abstract shape
Deliver icon

Sign up for our newsletter

Stay up-to-date on everything UpGuard with our monthly newsletter, full of product updates, company highlights, free cybersecurity resources, and more.
UpGuard customer support teamUpGuard customer support teamUpGuard customer support team

Protect your organization

Get in touch or book a free demo.
Free instant security score

How secure is your organization?

Request a free cybersecurity report to discover key risks on your website, email, network, and brand.
  • Check icon
    Instant insights you can act on immediately
  • Check icon
    Hundreds of risk factors including email security, SSL, DNS health, open ports and common vulnerabilities
Website Security scan resultsWebsite Security scan rating