CPT Group, Inc.
bd_c31e9c4116a19590 · schema v1 · pii pii-v1
Full breach record for CPT Group, Inc. →2 incidents on fileCPT Group, Inc. notified individuals of a phishing incident where an employee's email account was accessed by an unauthorized party from Nov 22 to Dec 8, 2017. The incident was discovered on Feb 8, 2018. Affected data included names, addresses, and SSNs. CPT engaged forensic investigators, implemented MFA, and provided one year of Kroll identity monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Nov 22, 2017
Begins
Feb 8, 2018
Discovered
May 8, 2018
Filed
vs. sector median
6 wks faster
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Delaware State AGbd_9d154eb6b5f6bc2e2018-05-08Verified
- Massachusetts State AGbd_8095bef0d2d971ef2018-04-30 · +8dVerified
- California State AGbd_4a1db9b56411442e2018-04-27 · +11dCandidate
Filing propagation · 4 filings · 4 states
View merged incident ↗Pattern: first filing Apr 27 (CA), last May 8 (MT) — a 11-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.