DisclosureLens
HackingGovernmentGovernmentVulnerability ExploitTargetedIdentity (basic)Government IDHighResolved

Port of Seattle

bd_5e76834050609e0d · schema v1 · pii pii-v1

Severity

High

Discovered

Aug 6, 2018

Filed

Apr 26, 2019

To disclose

38 weeks

Affected

3,357state residents only

Linked

3 filings

Confidence

69%
Full breach record for Port of Seattle2 incidents on file

Port of Seattle notified 3,357 employees and contractors of a security vulnerability in an externally hosted employee services website. The vulnerability potentially exposed names, SSNs, and driver's license numbers. Forensic investigation found no evidence of unauthorized access or data acquisition, but the Port provided complimentary credit monitoring as a precaution.

Incident timeline

discovery → filing · 38 weeks / 263 days

Aug 6, 2018

Discovered

Apr 26, 2019

Filed

This filing is one of 3 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (2) · sorted by filing gap

Filing propagation · 3 filings · 3 states

View merged incident ↗
Massachusetts State AGApr 26 · first
Montana State AGApr 26 · first
Washington State AGApr 26 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.