COX ENTERPRISES, INC.
bd_40c9054d45913818 · schema v1 · pii pii-v2
Full breach record for COX ENTERPRISES, INC. →Cox Enterprises, Inc. disclosed a cybersecurity incident involving Oracle’s E-Business Suite. Cybercriminals exploited a zero-day vulnerability between August 9-14, 2025. Cox discovered suspicious activity on September 29, 2025, and determined on October 31, 2025, that personal information (names) may have been copied. Notices were sent on November 20, 2025, offering credit monitoring. Law enforcement was contacted.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 9, 2025
Begins
Sep 29, 2025
Discovered
Nov 20, 2025
Filed
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Sitecl0pbd_839c9a8c3542409b2025-10-27 · +24dVerified by operator
Regulatory filings (8) · sorted by filing gap
- Vermont State AGbd_76c8778cb9fa2c6d2025-11-20Verified
- Massachusetts State AGbd_969a08a7f00f6f732025-11-20Verified by operator
- Indiana State AGbd_a35479fbdcf86c9a2025-11-20Verified
- Maine State AGbd_c14447cb7482b2fd2025-11-20Verified
Show 4 more filings ↓Show fewer ↑up to 5d gap
- California State AGbd_d243eedeb344b5f22025-11-20Verified
- Texas State AGbd_244cea98a033cd5c2025-11-21 · +1dVerified
- New Hampshire State AGbd_8766c6dda720b44a2025-11-21 · +1dVerified
- Montana State AGbd_7369119a392f44282025-11-25 · +5dVerified
Filing propagation · 9 filings · 9 states
View merged incident ↗Pattern: first filing Nov 20 (VT), last Nov 25 (MT) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.