THE ESTEE LAUDER COMPANIES INC.
bd_fea9064666f821a3 · schema v1 · pii pii-v2
Full breach record for THE ESTEE LAUDER COMPANIES INC. →5 incidents on fileTHE ESTÉE LAUDER COMPANIES filed a data-breach notice with the Illinois Attorney General in July 2026 (case 26-07-1322). The register records the breach as discovered on June 19, 2026. Personal information types reported: financial account number, medical information, passport number, ssn. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
J jump to incidentP pin to compareR raw source
Incident timeline
Jun 19, 2026
Discovered
Jul 1, 2026
Filed
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Sitecl0pbd_43a79f8803ec83502025-11-21 · +221dVerified
Regulatory filings (7) · sorted by filing gap
- Vermont State AGbd_eccf3e0cae9b9b662026-07-10 · +9dVerified
- California State AGbd_2fec812c019f031d2026-07-17 · +16dVerified
- Washington State AGbd_609ad332bd2107932026-07-17 · +16dVerified
- Nebraska State AGbd_6c3036d8fedc23172026-07-17 · +16dVerified
Show 3 more filings ↓Show fewer ↑up to 20d gap
- Massachusetts State AGbd_ed3611601cbbcae42026-07-17 · +16dVerified
- New Hampshire State AGbd_0591fad0aab37df12026-07-20 · +19dVerified
- Texas State AGbd_addb107ce7f347662026-07-21 · +20dVerified
Filing propagation · 8 filings · 8 states
View merged incident ↗Pattern: first filing Jul 1 (IL), last Jul 21 (TX) — a 20-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.