STILLWATER MINING COMPANY
bd_35af31644f0003c0 · schema v1 · pii pii-v1
Full breach record for STILLWATER MINING COMPANY →Sibanye-Stillwater (via Stillwater Mining Company) notified Montana employees of a cyber-attack discovered July 8, 2024, affecting ICT systems. Unauthorized activity was identified on U.S. systems as of mid-June 2024. Impacted data included names, contact details, government IDs, SSNs, tax IDs, DOBs, bank account numbers, and health plan numbers. The incident is contained; forensic investigators and law enforcement were engaged. Affected individuals received 24 months of Experian identity monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jun 15, 2024
Begins
Jul 8, 2024
Discovered
Sep 7, 2024
Filed
vs. sector median
2 wks faster
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Indiana State AGbd_a1d5521ddec2d4822024-09-07Verified
- Massachusetts State AGbd_0062a03edb9791fb2024-09-13 · +6dVerified
- Maine State AGbd_bc602b87f1f3ec832024-09-14 · +7dVerified
Filing propagation · 4 filings · 4 states
View merged incident ↗Pattern: first filing Sep 7 (IN), last Sep 14 (ME) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.