CPT Group, Inc.
bd_9d154eb6b5f6bc2e · schema v1 · pii pii-v1
Full breach record for CPT Group, Inc. →2 incidents on fileCPT Group, Inc. notified Delaware residents of a phishing incident where an unauthorized individual accessed an employee's email account from Nov 22 to Dec 8, 2017. The breach potentially exposed class member names, addresses, and Social Security Numbers. CPT engaged forensic investigators, implemented multi-factor authentication, and offered one year of Kroll Identity Monitoring to affected individuals.
J jump to incidentP pin to compareR raw source
Incident timeline
Nov 22, 2017
Begins
Feb 8, 2018
Discovered
May 8, 2018
Filed
vs. sector median
6 wks faster
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Montana State AGbd_c31e9c4116a195902018-05-08Verified
- Massachusetts State AGbd_8095bef0d2d971ef2018-04-30 · +8dVerified
- California State AGbd_4a1db9b56411442e2018-04-27 · +11dCandidate
Filing propagation · 4 filings · 4 states
View merged incident ↗Pattern: first filing Apr 27 (CA), last May 8 (DE) — a 11-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.