Woodruff Sawyer & Co.
bd_ed05c815b14e80a3 · schema v1 · pii pii-v1
Full breach record for Woodruff Sawyer & Co. →6 incidents on fileWoodruff Sawyer & Co., an insurance consulting brokerage, reported unauthorized access to employee email accounts between March 2, 2020, and April 30, 2020. An unknown actor used valid credentials to access emails, potentially exposing names and Social Security numbers of approximately one New Hampshire resident. The company engaged forensic investigators, reset credentials, implemented MFA, and offered 12 months of credit monitoring. The investigation is ongoing.
J jump to incidentP pin to compareR raw source
Incident timeline
Mar 2, 2020
Begins
Feb 18, 2021
Filed
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- Indiana State AGbd_ab550ebdcc10ce7c2021-03-09 · +19dVerified
Filing propagation · 2 filings · 2 states
View merged incident ↗Pattern: first filing Feb 18 (NH), last Mar 9 (IN) — a 19-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.