The Travel Corporation (TravelCorp)
bd_d39f32850f856223 · schema v1 · pii pii-v1
Full breach record for The Travel Corporation (TravelCorp) →The Travel Corporation notified employees of a phishing incident on Feb 26, 2018, where an attacker impersonated the CEO to obtain W2s and payroll data. Affected data included names, SSNs, and addresses of US employees. The company reported the incident to the FBI and local police.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 26, 2018
Begins
Feb 26, 2018
Discovered
Mar 9, 2018
Filed
vs. sector median
7 wks faster
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- California State AGbd_99257e015d48a9432018-03-01 · +8dCandidate
Filing propagation · 2 filings · 2 states
View merged incident ↗Pattern: first filing Mar 1 (CA), last Mar 9 (MT) — a 8-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.