Gray
bd_c6bd8a5ea2cad3a4 · schema v1 · pii pii-v1
Full breach record for Gray →2 incidents on fileGray, Inc. notified Montana employees of a phishing incident where an employee's email was compromised starting April 1, 2018. Personal data including names, addresses, SSNs, and banking info were forwarded to an unknown account. Gray engaged Kroll for forensic investigation and provided one year of identity monitoring to affected staff. Investigation was ongoing as of the August 29, 2018 notice.
J jump to incidentP pin to compareR raw source
Incident timeline
Apr 1, 2018
Begins
Aug 17, 2018
Discovered
Aug 29, 2018
Filed
vs. sector median
17 wks faster
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.