CentiMark Corporation
bd_5aab9959235eab5b · schema v1 · pii pii-v1
Full breach record for CentiMark Corporation →CentiMark, a commercial roofing company, notified Montana and other state regulators of a ransomware incident discovered on August 11, 2022. Unauthorized access occurred between August 7-11, 2022. Potential exposure includes names, DOB, SSN, driver's license, and medical/insurance info. No evidence of misuse found. CentiMark engaged forensic investigators, secured networks, and implemented MFA and password policy changes.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 7, 2022
Begins
Aug 11, 2022
Discovered
Dec 2, 2022
Filed
vs. sector median
+5 wks slower
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Indiana State AGbd_456eb2c76260731d2022-12-02Verified
- Maine State AGbd_6db6c41cefddb2c92022-12-02Verified
- New Hampshire State AGbd_2c1cbdcb0f9d40052022-12-05 · +3dVerified
- Massachusetts State AGbd_0c1bfc25cbe8f8152022-12-09 · +7dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Pattern: first filing Dec 2 (IN), last Dec 9 (MA) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.