THE ESTEE LAUDER COMPANIES INC.
bd_0591fad0aab37df1 · schema v1 · pii pii-v1
Full breach record for THE ESTEE LAUDER COMPANIES INC. →5 incidents on fileThe Estee Lauder Companies notified the NH AG of a cybersecurity incident involving a zero-day vulnerability in Oracle E-Business Suite. An unauthorized third party exploited this vulnerability to access and exfiltrate personal data from August 9-12, 2025. Affected data for ~72 NH residents includes names, SSNs, passport numbers, bank account numbers, health info, and employment records. The company patched the vulnerability, engaged forensic experts, notified law enforcement, and is offering 24 months of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 9, 2025
Begins
Jul 20, 2026
Filed
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Sitecl0pbd_43a79f8803ec83502025-11-21 · +240dVerified
Regulatory filings (7) · sorted by filing gap
- Texas State AGbd_addb107ce7f347662026-07-21 · +1dVerified
- California State AGbd_2fec812c019f031d2026-07-17 · +3dVerified
- Washington State AGbd_609ad332bd2107932026-07-17 · +3dVerified
- Nebraska State AGbd_6c3036d8fedc23172026-07-17 · +3dVerified
Show 3 more filings ↓Show fewer ↑up to 19d gap
- Massachusetts State AGbd_ed3611601cbbcae42026-07-17 · +3dVerified
- Vermont State AGbd_eccf3e0cae9b9b662026-07-10 · +10dVerified
- Illinois State AGbd_fea9064666f821a32026-07-01 · +19dCandidate
Filing propagation · 8 filings · 8 states
View merged incident ↗Pattern: first filing Jul 1 (IL), last Jul 21 (TX) — a 20-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.