Five Guys Holdings, Inc.
bd_07f36ad709cc046f · schema v1 · pii pii-v1
Full breach record for Five Guys Holdings, Inc. →5 incidents on fileFive Guys Enterprises, LLC notified California residents that an employee fell victim to a phishing email on August 6, 2018, resulting in unauthorized access to their email account. The incident occurred between May 23, 2018, and August 6, 2018. Affected data may include names, dates of birth, Social Security numbers, addresses, hire/termination dates, and 401K contribution information. Five Guys secured the account, engaged a cybersecurity firm, and offered one year of Experian IdentityWorks to affected employees.
J jump to incidentP pin to compareR raw source
Incident timeline
May 23, 2018
Begins
Aug 6, 2018
Discovered
Nov 2, 2018
Filed
vs. sector median
+5 wks slower
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Montana State AGbd_956df4f5240be8cc2018-11-02Verified
- New Hampshire State AGbd_912b3a1d2a2cf3812018-11-06 · +4dVerified
- California State AGbd_dd813d29e6e97c362018-11-30 · +28dVerified
- New Hampshire State AGbd_737fd489118d8ac92018-12-03 · +31dVerified
Filing propagation · 5 filings · 3 states
View merged incident ↗Pattern: first filing Nov 2 (MT), last Dec 3 (NH) — a 31-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.