HackingSupply Chain (3P Vendor)Customer Data InvolvedPIIIDENTITY_BASICLowContained
WK KELLOGG CO
bd_8aaba010cf1da3a8 · schema v1 · pii pii-v1
Full breach record for WK KELLOGG CO →WK Kellogg Co. notified individuals of a security incident involving its third-party file transfer vendor, Cleo. An unauthorized person gained access to Cleo-hosted servers on December 7, 2024, which were used to transfer employee files. WK Kellogg learned of the incident on February 27, 2025. The affected data included employee personal information. The company engaged Cleo in the investigation and is offering complimentary identity monitoring services via Kroll.
Leak gap clock⏱ Leak >30d5 weeks discovery → filing
This filing is one of 4 about the same incident.View merged incident
A leak claim by cl0p about this victim predates this filing by 36 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_6d36243d4b4a9ca6Leak Sitecl0pfiled 2025-02-27(36d gap)Verified
Regulatory filings (2) · sorted by filing gap
- bd_33282fd020487c03Maine State AGfiled 2025-04-04Verified
- bd_5274f974c8dcc383Indiana State AGfiled 2025-04-04Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/wk-kellogg-20250404.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 4, 2025
- Raw hash
- d8e0c4b7b69f102e8f8732a5328d609a53e470dc19c5fdb4fd0a575a5567afc2
Reporting entity
- Name
- WK KELLOGG COnorm: wk kellogg
- Domain
- wkkellogg.com
Victim entity
- Name
- WK KELLOGG COnorm: wk kellogg
- Domain
- wkkellogg.com
Incident
- Discovered
- Feb 27, 2025
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain CompromiseT1078 Valid Accounts
- Threat actor
- External
- Initial access
- trusted_relationship
Compliance
- Time to disclose
- 5 weeks(36 days from discovery to filing)
- Compliance flags
- Leak >30d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.