Former Disney Employee Hacked Menus
Analysis based on 10 articles · First reported Apr 24, 2025 · Last updated Apr 28, 2025
The cyber attack on The Walt Disney Company's menu systems by Michael Scheuer, though detected before public harm, highlights cybersecurity risks for large corporations, potentially increasing investor scrutiny on security measures in the hospitality sector. The restitution ordered against Michael Scheuer will partially offset The Walt Disney Company's financial losses from the incident.
Michael Scheuer, a former menu production manager for The Walt Disney Company, was sentenced to three years in federal prison and ordered to pay nearly $690,000 in restitution for hacking the company's servers. After being fired in June 2024, Michael Scheuer accessed The Walt Disney Company's internal menu creation system multiple times between July and September 2024. His intrusions included manipulating allergen information to falsely indicate food items were safe, adding profane language and offensive symbols, changing wine regions to mass shooting locations, and disabling employee accounts through denial-of-service attacks. The Walt Disney Company detected the alterations before they reached customers and incurred significant costs to revert to backups and develop a new, more secure menu management platform. The United States — Federal Bureau of Investigation's Tampa division investigated the incident, leading to Michael Scheuer's arrest and subsequent guilty plea to computer fraud and aggravated identity theft charges.
Set up alerts, explore entity relationships, search across thousands of events, and build custom intelligence feeds.
Open Dashboard