Gannett Company, Inc.
bd_7f12b327f14904e7 · schema v1 · pii pii-v1
Full breach record for Gannett Company, Inc. →3 incidents on fileGannett Company, Inc. disclosed a phishing attack targeting HR department employees, compromising Office 365 credentials. The attacker sent further phishing emails and attempted a fraudulent wire transfer, which was unsuccessful. Potential exposure included employee PII, SSNs, bank account numbers, and salary information. No sensitive data acquisition was confirmed, but notice was sent out of caution. Accounts were locked, credentials reset, and forensic investigation confirmed no other systems were impacted.
J jump to incidentP pin to compareR raw source
Incident timeline
Mar 28, 2017
Begins
Mar 30, 2017
Discovered
Apr 28, 2017
Filed
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Montana State AGbd_2f5e4908de2fddea2017-04-28Candidate
- Massachusetts State AGbd_61e7bc23c2170e6b2017-04-28Verified
- New Hampshire State AGbd_b7d86566afd376bf2017-04-28Verified
Filing propagation · 4 filings · 4 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.