BIMBO BAKERIES USA, INC.
bd_e32a9155ac2ff4e5 · schema v1 · pii pii-v2
Full breach record for BIMBO BAKERIES USA, INC. →3 incidents on fileBimbo Bakeries USA notified the NH Attorney General of a data security incident involving a zero-day vulnerability in Oracle's eBusiness Suite. Unauthorized parties exploited the vulnerability to access and exfiltrate files containing names, Social Security numbers, and bank account/routing numbers of current and former employees, dependents, and beneficiaries. BBU first learned of the vulnerability on October 6, 2025, and applied patches. The investigation concluded on August 19, 2026, that 94 New Hampshire residents were affected. Notification letters were mailed starting August 31, 2026. Credit monitoring is being offered.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 6, 2025
Discovered
Sep 4, 2026
Filed
vs. sector median
+37 wks slower
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- Texas State AGbd_1b9a5e8bada1d1cf2026-09-04Verified
- Vermont State AGbd_31cb0b9707617aac2026-09-04Verified
- California State AGbd_8b8a3d993cb8884c2026-09-04Candidate
- Oregon State AGbd_98e41097b3c006772026-09-04Verified
Show 2 more filings ↓Show fewer ↑up to 3d gap
- Washington State AGbd_b84afca8dd28c2bd2026-09-04Verified
- Massachusetts State AGbd_690a4a35b67d0e102026-09-01 · +3dVerified
Filing propagation · 7 filings · 7 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.