WESTINGHOUSE AIR BRAKE TECHNOLOGIES CORP
bd_609e558e001a5da5 · schema v1 · pii pii-v1
Full breach record for WESTINGHOUSE AIR BRAKE TECHNOLOGIES CORP →Wabtec Corporation experienced a cyber incident where malware was introduced into systems as early as March 15, 2022. The company became aware of unusual activity on June 26, 2022. Forensic investigation revealed unauthorized access and data exfiltration, with some data later posted to a threat actor's leak site. Affected individuals' information included names and potentially Social Security numbers, credit/debit card numbers, or bank account numbers. Wabtec engaged cybersecurity firms, notified the FBI, implemented additional safeguards, and offered 24 months of credit monitoring.
Linked disclosures
Why this link?Ransomware claims (1)
- bd_f415bb095f594df0Leak Sitelockbit_3filed 2022-08-18(504d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-578867
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 4, 2024
- Raw hash
- 19a0306201ddd9d185011d5820a54c2b5121e9b74368f5959be132e982ec21db
Reporting entity
- Name
- WESTINGHOUSE AIR BRAKE TECHNOLOGIES CORPnorm: westinghouse air brake
- Domain
- wabteccorp.com
Victim entity
- Name
- WESTINGHOUSE AIR BRAKE TECHNOLOGIES CORPnorm: westinghouse air brake
- Domain
- wabteccorp.com
Incident
- Discovered
- Jun 26, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unknown
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 ChannelT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified the Federal Bureau of InvestigationNotifying all applicable regulatory authorities
Compliance
- Time to disclose
- 19 months(557 days from discovery to filing)
- Compliance flags
- Leak >180d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.