Graff Gets Hit by Ransomware Attack
The data breach included some personal details of high-end clients.

Ransomware is malware that uses encryption to hold a victim’s system or personal files and demands payment to get them back.
For most people involved in the Graff data breach, it included details like their name and potentially their home address—which can be retrieved in the public domain from other sources– rather than any other confidential details that would put them at risk of identity theft.
A Graff spokesperson said the brand informed “the small group of individuals whose personal data was compromised to such an extent” and advised them on the appropriate steps to take.
The brand’s security systems alerted it to the activity, allowing it to react quickly and shut down its network.
Graff said it has been working with the U.K.’s Information Commissioner’s Office and relevant law enforcement on the incident.
“Thanks to our robust back-up facilities we were able to rebuild and restart our systems within days - crucially with no irretrievable loss of data,” the spokesperson said.
“Sadly, it appears that notable brands, corporations and even government departments are deliberately targeted by unscrupulous operators to extort money, cause disruption or simply embarrassment. Cybercrime continues to rise in scale and complexity. It is a threat to every business. Maintaining the highest level of security against these threats has always been a top priority for us. We are continually strengthening our systems to counter these threats as they evolve.”
The group known as Conti is said to be behind the attack, the U.K.’s The Times reported, leaking the details of the brand’s high-end clientele to the dark web.
In a September press release, the Cybersecurity and Infrastructure Security Agency said it and the Federal Bureau of Investigation had seen an increase in the use of Conti ransomware in more than 400 attacks on U.S. and international organizations.
Earlier this year, the FBI said it had identified at least 16 Conti ransomware attacks that targeted healthcare and first responder networks in the U.S.
While the hacks that tend to make headlines are the bigger ones, small businesses should also protect themselves against such crimes.
The Jewelers’ Security Alliance recommends the following actions to prevent cybercrime.
1. Have proper firewalls, anti-virus, and anti-malware for all systems, and keep them up to date.
2. Don’t let employees use company internet-connected devices at work for personal use or download software without permission. Additionally, don’t let them introduce personal memory sticks into a company system.
3. Have strong, unique passwords.
4. Beware of phishing. One of the main pathways for cyber criminals is to lead someone to open and click on a link in an email which will unleash malware to penetrate the system, JSA said.
So, don’t open or click on unknown or suspicious emails. Even emails from people and customers or vendors that might seem familiar can be spoof emails or from someone who has obtained an email address only slightly different from a real email address.
Additionally, look for unfamiliar foreign domains, misspellings, and other anomalies.
5. Beware of social engineering, which is obtaining confidential information by manipulating and/or deceiving people.
Criminals can obtain information on company personnel, customers, ordering, shipping procedures, payment methods, and other information for a fraudulent transaction through impersonation, email correspondence, research on social media, or other means.
So, be careful of the information provided to the public by email, website, social media, or phone.
Also, confirm the identity of the person to whom you are talking. If the interaction includes a transaction, call the known customer on the telephone to confirm there hasn’t been fraudulent impersonation.
6. Avoid visiting questionable and risky sites.
7. Don’t download questionable apps from obscure or unknown companies.
8. Have a written cyber security policy that employees must read and sign.
9. Have regular staff meetings and periodic reviews of cyber protocols for the business.
The Latest

In its annual report, Pinterest noted an increase in searches for brooches, heirloom jewelry, and ‘80s luxury.

Starting Jan. 1, customers can request the service for opal, peridot, and demantoid garnet.

The 111-year-old retailer celebrated the opening of its new location in Salem, New Hampshire, which is its third store in the state.

How Jewelers of America’s 20 Under 40 are leading to ensure a brighter future for the jewelry industry.

The new catalog features its most popular chains as well as new styles.


The filmmaker’s personal F.P. Journe “FFC” prototype was the star of Phillips’ recent record-setting watch auction in New York.

The new location in the Design District pays homage to Miami’s Art Deco heritage and its connection to the ocean.

Roseco’s 704-page catalog showcases new lab-grown diamonds, findings, tools & more—available in print or interactive digital editions.

Inflations, tariffs, and politics—including the government shutdown—were among consumers’ top concerns last month.

“Longtime favorite” presenters, as well as first-time speakers, will lead talks and workshops at the annual event in Tucson next year.

Silas Smith of Meridian Metalworks won the challenge with his pendant that blends Australian and American landscapes.

The sale of the 31.68-carat, sunset-hued stone was part of Sotheby’s first series of events and auctions in Abu Dhabi.

Most customers who walk into your store this month have made up their minds. Your job is to validate their choice, Emmanuel Raheb writes.

The collection features characters and motifs from Ukrainian folklore, including an enchanted mirror and a magic egg.

MatrixGold 3.11, the newest version of the jewelry design program, offers more flexibility, precision, and creative control.

The pavilion will be part of the 2026 JA New York Spring show, scheduled for March 15 to 17.

Kadet, a 1994 National Jeweler Retailer Hall of Fame inductee, helped grow the family-owned retailer in the Chicago area and beyond.

Billed as the world’s smallest wearable, Lumia Health’s new smart earrings have a health tracker subtly embedded in the back.

Don’t let those with December birthdays feel blue. Help them celebrate their month with blue zircon, turquoise, and tanzanite.

The new pink sapphire version of the piece dances with its wearer in the brand’s “Icons After Dark” holiday campaign.

A choice that’s generated a lot of commentary, Pantone says “Cloud Dancer” marks a fresh start and encourages relaxation and creativity.

The manufacturer’s holiday campaign features a gift guide filled with trending designs and jewelry that can be personalized.

The Florida independent expanded its store from 8,000 to 14,000 square feet, fulfilling the vision of its late co-founder, Jim Dunn.

Sponsored by De Beers Group

The classic 5600 series G-Shock has been scaled down to about a tenth of its size, becoming a fully functioning watch ring.

The association’s annual conference and gala will take place Feb. 4, 2026, during the Tucson gem shows.

The January show will include a workshop for jewelry retailers on implementing AI to strengthen their businesses.























