AccidentalMisdeliveryCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumResolved
Supreme
bd_765ba552845b0f51 · schema v1 · pii pii-v1
Full breach record for Supreme →Paycor, Inc. reported a data security breach involving Supreme Corporation employees. On February 16, 2018, a Paycor employee accidentally mailed an encrypted CD containing W-2 forms (names, addresses, SSNs) to a recipient at another company. The recipient notified Paycor on February 22, 2018. Paycor determined there was virtually no risk of identity theft, but offered one year of Experian IdentityWorks services. The incident was resolved by securing the return of the CD and deleting the data.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-134791
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 26, 2018
- Raw hash
- 06bb05b8a48b2f894385b29bbe2e5bbe35cc2f0e688a88f32540b35828b7b9a6
Reporting entity
- Name
- Paycornorm: paycor
- Domain
- paycor.com
Victim entity
- Name
- Supremenorm: supreme
- Domain
- supreme.com
Incident
- Discovered
- Feb 22, 2018
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Unknown
- MITRE ATT&CK
- T1535 Untrusted Internal Access
- Threat actor
- Internal
Compliance
- Time to disclose
- 5 weeks(32 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.