MalwareRansomwareData EncryptedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENTMediumContained
RailWorks Corporation
bd_dd7e679267caadbd · schema v1 · pii pii-v1
Full breach record for RailWorks Corporation →RailWorks Corporation reported a cyberattack on January 27, 2020, where an unauthorized third party encrypted servers and systems. The incident potentially exposed employees' and former employees' names, addresses, Social Security numbers, driver's license numbers, dates of birth, and employment dates. RailWorks provided 12 months of free credit monitoring via Identity Guard. No specific malware family or threat actor was named.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_029317d5decd144dWashington State AGfiled 2020-02-27Candidate
- bd_bb7977b8709a7e09Montana State AGfiled 2020-02-27Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-187766
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 27, 2020
- Raw hash
- 99c0923902593658ab92f353ee19a1a3d7b15d64ee84c8d4e1373bb686c29918
Reporting entity
- Name
- RailWorks Corporationnorm: railworks
Victim entity
- Name
- RailWorks Corporationnorm: railworks
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jan 30, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- External
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.