MalwareRansomwareData EncryptedEmployee Data InvolvedIDENTITY_BASICPIILowContained
Cardinal Logistics Management Corp.
bd_ce279121db2d821e · schema v1 · pii pii-v1
Full breach record for Cardinal Logistics Management Corp. →Cardinal Logistics Management Corp. experienced a ransomware attack on October 20, 2020, resulting in the encryption of several systems. The incident potentially exposed personal information of current and former employees, including names and other data elements. The company launched an investigation, contained the incident, and offered credit monitoring services to affected individuals. No actual misuse of data was confirmed.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_1a17d74a4d4210a7Oregon State AGfiled 2021-03-02Candidate
- bd_bce9b51fb24a0189Montana State AGfiled 2021-03-02Verified
- bd_e74aee4c1a224dd2Washington State AGfiled 2021-03-02Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-538533
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 2, 2021
- Raw hash
- 69a3d77da213af34b6f310b68d9d7c5a994bd9517612de208a6c699fa4b65c78
Reporting entity
- Name
- Cardinal Logistics Management Corp.norm: cardinal logistics management
- Domain
- cardlog.com
Victim entity
- Name
- Cardinal Logistics Management Corp.norm: cardinal logistics management
- Domain
- cardlog.com
Incident
- Discovered
- Oct 20, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICPII
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- External
Compliance
- Time to disclose
- 19 weeks(133 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.