Expedia Group, Inc.
bd_b1b6f720de0c805a · schema v1 · pii pii-v1
Full breach record for Expedia Group, Inc. →On March 24, 2021, Expedia Group, Inc. experienced a security breach that was discovered on February 14, 2022. The breach affected 3 Maine residents and involved the compromise of financial account numbers or credit/debit card numbers, along with their corresponding security codes, access codes, passwords, or PINs. The company provided 12 months of identity theft protection services through Expedia IdentityWorks to those affected.
J jump to incidentP pin to compareR raw source
Incident timeline
Mar 24, 2021
Begins
Feb 14, 2022
Discovered
Mar 2, 2022
Filed
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Massachusetts State AGbd_5d0bf85e55a02ab52022-03-02Verified
- Indiana State AGbd_b3cbd3de7bb95e4b2022-03-02Verified
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.