Woodruff Sawyer & Co.
bd_a4ee49c5e2e7c8d2 · schema v1 · pii pii-v1
Full breach record for Woodruff Sawyer & Co. →6 incidents on fileWoodruff Sawyer & Co. notified Montana residents of unauthorized access to an employee email account between March 2-3, 2020. The incident involved the use of stolen credentials and resulted in potential exposure of personal information belonging to clients. The company engaged forensic investigators, reset passwords, and offered one year of credit monitoring services.
J jump to incidentP pin to compareR raw source
Incident timeline
Mar 2, 2020
Begins
Mar 2, 2020
Discovered
Nov 9, 2020
Filed
vs. sector median
+18 wks slower
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Washington State AGbd_d237dca2559a135f2020-11-10 · +1dVerified
- Oregon State AGbd_3becb4dbc41e61352020-11-12 · +3dVerified by operator
- California State AGbd_05d436bb4d52abd62020-12-08 · +29dVerified
Filing propagation · 4 filings · 4 states
View merged incident ↗Pattern: first filing Nov 9 (MT), last Dec 8 (CA) — a 29-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.