Gannett Company, Inc.
ent_0086ee1829d184991d9b3160
Disclosures
6
State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
18,100
nationwide · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Gannett Company, Inc.
- Normalized
- gannett— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (6)newest first
- Massachusetts State AGas victim2026-07-22
Gannett Satellite Information Network, LLC notified Massachusetts residents via a state-AG notice dated July 22, 2026, regarding a payroll fraud incident. The breach involved unauthorized attempts to change payroll direct deposit details, resulting in the potential exposure of names and Social Security numbers. The company investigated, confirmed the changes were not completed, and offered 24 months of credit monitoring. No specific discovery or occurrence dates were provided.
- Massachusetts State AGas victim2018-08-28
Gannett Co. Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-08-28. 75 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas victim2017-04-28
Gannett Company, Inc. notified Montana residents of a phishing attack on March 30, 2017, which compromised HR department Office 365 credentials. The attacker attempted a fraudulent wire transfer and sent further phishing emails. While no sensitive data acquisition was confirmed, employee PII (SSNs, DOBs, financial info) was potentially accessible. Gannett locked accounts, engaged law enforcement, and provided 12 months of identity protection.
- Massachusetts State AGas victim2017-04-28
Gannett Company, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2017-04-28. 37 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2017-04-28
Gannett Company, Inc. disclosed a phishing attack targeting HR department employees, compromising Office 365 credentials. The attacker sent further phishing emails and attempted a fraudulent wire transfer, which was unsuccessful. Potential exposure included employee PII, SSNs, bank account numbers, and salary information. No sensitive data acquisition was confirmed, but notice was sent out of caution. Accounts were locked, credentials reset, and forensic investigation confirmed no other systems were impacted.
- New Hampshire State AGas victim2017-04-28
Gannett Company, Inc. notified the NH AG of a phishing attack on March 30, 2017, compromising HR Office 365 credentials. Perpetrators sent further phishing emails and attempted a fraudulent wire transfer (unsuccessful). 18,100 individuals affected, including 3 NH residents. Data potentially exposed: names, SSNs, DOB, bank/routing numbers, salary info. Gannett locked accounts, conducted forensic investigation, notified FBI, and provided 12 months of credit monitoring.