CR&R INCORPORATED
bd_93b08d2cd3260d1f · schema v1 · pii pii-v1
Full breach record for CR&R INCORPORATED →4 incidents on fileCR&R Incorporated reported a data breach to the California Attorney General. Unauthorized access occurred between October 19, 2022, and December 18, 2022. The incident potentially exposed personal information, including Social Security numbers, for residents of California and several other states. The company offered credit monitoring services and established a call center for affected individuals. The specific method of unauthorized access was not disclosed in the provided notice.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 19, 2022
Begins
Jan 23, 2025
Filed
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Vermont State AGbd_e426603275d65c9b2025-01-03 · +20dVerified
- Maine State AGbd_2554bee11b79a8462024-12-31 · +23dVerified
- Nebraska State AGbd_3413f57e238e5c462024-12-26 · +28dVerified
- Indiana State AGbd_fb91ceed0e770fdd2024-12-26 · +28dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Pattern: first filing Dec 26 (NE), last Jan 23 (CA) — a 28-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.