Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Kering

Kering Vendor Cyber Rating & Cyber Score

kering.com

Kering is a global, family-led luxury group, home to people whose passion and expertise nurture creative Houses across ready-to-wear and couture, leather goods, jewelry, eyewear and beauty: Gucci, Saint Laurent, Bottega Veneta, Balenciaga, McQueen, Brioni, Boucheron, Pomellato, Dodo, Qeelin, Ginori 1735, as well as Kering Eyewear and Kering Beauté. Inspired by their creative heritage, Kering’s Houses design and craft exceptional products and experiences that reflect the Group’s commitment to excellence, sustainability and culture. This vision is expressed in our signature: Creativity is our Legacy.


Kering A.I CyberSecurity Scoring

Kering
Company Information
Website:https://www.kering.com/en
Employees number:38,974
Number of followers:871,334
NAICS:4483
Industry Type:Retail Luxury Goods and Jewelry
Homepage:kering.com
Kering Risk Score (AI oriented)
Between 700 and 749
logo
KeringRetail Luxury Goods and Jewelry
Updated:
01/04/2026
738/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Kering Global Score (TPRM)
xxxx
logo
KeringRetail Luxury Goods and Jewelry
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Kering
KeringModerate
Current Score
738Ba (MODERATE)
01000
2 incidents
0 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
743Before Incident
MAY 2026
737Before Incident
APRIL 2026
736Before Incident
MARCH 2026
735Before Incident
FEBRUARY 2026
733Before Incident
JANUARY 2026
732Before Incident
DECEMBER 2025
738Before Incident
NOVEMBER 2025
737Before Incident
OCTOBER 2025
736Before Incident
SEPTEMBER 2025
734Before Incident
AUGUST 2025
733Before Incident
JULY 2025
731Before Incident
APRIL 2025
743Before Incident
Cyber Attack
01 Apr 2025Kering
Kering

Kering Data Breach by Shiny Hunters

724After Incident
CRITICAL-19
KER0692106091525
Kering, a French luxury goods conglomerate, suffered a data breach in April when an unauthorized third party (the cybercriminal group Shiny Hunters/UNC6040) gained temporary access to its systems. The attacker exploited compromised employee credentials to access Salesforce software, stealing customer data linked to 7.4 million unique email addresses. The exposed information included purchase histories (e.g., 'Total Sales' showing individual spending up to $86,000), raising concerns about targeted secondary scams against high-value customers. While no financial data (e.g., bank details, credit cards, or government IDs) was compromised, the breach poses significant reputational and fraud risks. The hacker demanded a ransom in Bitcoin, which Kering refused per law enforcement guidance. The company privately notified affected customers but made no public disclosure, despite the breach coinciding with similar attacks on other luxury brands (e.g., Cartier, Louis Vuitton). Google later linked Shiny Hunters to a broader campaign of phishing-based Salesforce breaches, highlighting systemic vulnerabilities in employee authentication.
INCIDENT DETAILS -
TYPE
Data BreachUnauthorized Access
MOTIVATION
Financial GainData Exfiltration for Secondary Exploitation
IMPACT
Email addressesTotal Sales (purchase history)Customer spending patternsInternal Salesforce softwareCustomer databasesOperational Impact: Temporary unauthorized access; systems later securedCustomer Complaints: Likely (not quantified; customers notified via email)Brand Reputation Impact: Moderate to High (luxury brand trust erosion, potential secondary scams targeting high-spending customers)Legal Liabilities: None disclosed (company claims compliance with notification requirements)Identity Theft Risk: Low (no government-issued IDs or financial data stolen, but high-spending customers at risk of targeted scams)Payment Information Risk: None (no credit card or bank details compromised)
DATA BREACH
Personal Data (emails)Transaction Data (Total Sales)Customer ProfilesSensitivity Of Data: Moderate (no financial/PII like SSNs, but spending habits reveal high-value targets)Data Exfiltration: Confirmed (sample shared with BBC as proof)Customer databasesSales recordsPersonally Identifiable Information: Partial (emails only; no government IDs or financial data)
JUNE 2024
818Before Incident
Breach
01 Jun 2024Kering
Kering (Gucci, Balenciaga, Brioni, Alexander McQueen)

Kering Group (Gucci, Balenciaga, Brioni, Alexander McQueen) Customer Data Breach via Salesforce Compromise

728After Incident
CRITICAL-90
KER3565635100325
Hackers breached Kering, the parent company of luxury brands like Gucci, Balenciaga, Brioni, and Alexander McQueen, stealing 56 million customer records (43M from Gucci alone). The intrusion occurred in June 2024, with attackers exfiltrating data from Kering’s Salesforce account. The stolen records reportedly include sensitive customer information, though specifics (e.g., payment details, PII) remain undisclosed. The hackers claimed to have negotiated a $500,000 ransom, which Kering allegedly refused to pay. Following the breach, Gucci’s tokenized assets crashed 80% in value, signaling severe reputational and financial fallout. The attack underscores vulnerabilities in third-party cloud platforms (Salesforce) and the high-value target nature of luxury retail databases for cybercriminals.
INCIDENT DETAILS -
TYPE
Data BreachUnauthorized AccessExtortion Attempt
MOTIVATION
Financial Gain (Ransom Demand)Data Theft for Resale
IMPACT
Financial Loss: $500,000 (ransom demanded, unpaid) + potential regulatory fines and remediation costsData Compromised: 56 million customer records (43M Gucci, 13M other brands)Salesforce CRMCustomer DatabasesCustomer trust erosionPotential legal and compliance violations (e.g., GDPR)Customer Complaints: Likely (not quantified)Brand Reputation Impact: High (luxury brands targeted, public disclosure of breach)Potential GDPR fines (up to 4% of global revenue)Class-action lawsuits from affected customersIdentity Theft Risk: High (customer PII exposed)
DATA BREACH
Personally Identifiable Information (PII)Customer ProfilesPurchase Histories (likely)Number Of Records Exposed: 56 millionSensitivity Of Data: High (luxury customer data, potential financial details)Data Exfiltration: Confirmed (56M records stolen)Database DumpsCSV/Excel (likely)NamesEmail AddressesPhone NumbersPhysical Addresses (likely)Payment Preferences (possible)

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Kering ?
?
What was Kering's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Kering's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Kering's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Kering's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Kering's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Kering's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Kering's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Kering's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Kering's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Kering's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Kering's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Kering's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Kering ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Kering's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?