Faneuil, Inc.
bd_08fd1bcfc2254b58 · schema v1 · pii pii-v1
Full breach record for Faneuil, Inc. →Faneuil, Inc. notified Delaware AG of a ransomware attack discovered on August 18, 2021. Attackers accessed and copied employee records (names, SSNs, addresses, emails) before encrypting systems. Faneuil paid the ransom, confirmed data destruction, isolated systems, engaged forensic experts, and reported to law enforcement. Affected individuals received 24 months of Experian IdentityWorks. No public data release was observed.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 18, 2021
Discovered
Feb 8, 2022
Filed
vs. sector median
+6 wks slower
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- California State AGbd_125d95dc09b67ece2022-02-07 · +1dVerified
- Delaware State AGbd_06d0fd77be8a70412022-02-01 · +7dCandidate
Filing propagation · 3 filings · 2 states
View merged incident ↗Pattern: first filing Feb 1 (DE), last Feb 8 (DE) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.