WK KELLOGG CO
bd_8aaba010cf1da3a8 · schema v1 · pii pii-v1
Full breach record for WK KELLOGG CO →2 incidents on fileWK Kellogg Co. notified individuals of a security incident involving its third-party file transfer vendor, Cleo. An unauthorized person gained access to Cleo-hosted servers on December 7, 2024, which were used to transfer employee files. WK Kellogg learned of the incident on February 27, 2025. The affected data included employee personal information. The company engaged Cleo in the investigation and is offering complimentary identity monitoring services via Kroll.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 7, 2024
Begins
Feb 27, 2025
Discovered
Apr 4, 2025
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Sitecl0pbd_6d36243d4b4a9ca62025-02-27 · +36dVerified
Regulatory filings (3) · sorted by filing gap
- Maine State AGbd_33282fd020487c032025-04-04Verified
- Indiana State AGbd_5274f974c8dcc3832025-04-04Verified
- Massachusetts State AGbd_faf7ac7456a8c7132025-04-04Verified by operator
Filing propagation · 4 filings · 4 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.