U.S. Waffle Inc
bd_cae19c42d35cb7c5 · schema v1 · pii pii-v1
Full breach record for U.S. Waffle Inc →U.S. Waffle, Inc. reported a security event where an employee email account was accessed by an unauthorized actor between January 18, 2023, and March 3, 2023. The actor likely used phishing to gain access and attempted to redirect payments. Personal information in the affected accounts may have been downloaded. The company engaged forensic experts, coordinated with law enforcement, and offered two years of complimentary identity monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 18, 2023
Begins
Sep 26, 2023
Filed
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Massachusetts State AGbd_78cc1e2a0adc4fe32023-09-26Verified
- Maine State AGbd_d53f2e5a94f02f812023-09-26Verified
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.