Lee Enterprises, Incorporated
ent_019dd16f6efb62dc2ac2f1ea2c7449c2
Disclosures
11
State AG · SEC 8-K · Leak Site · 9 jurisdictions
Incidents
2
filings grouped by incident
Max affected reported
39,779
as filed · State AG OR
Leak-site claims
2
unverified actor claims
Identity resolution
- Canonical name
- Lee Enterprises, Incorporated
- Normalized
- lee— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- 0000058361
- Domain
- lee.net
Disclosure history (11)newest first
- ⭐Texas State AGas victim2025-06-05
Lee Enterprises based in Davenport, Iowa, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-05-28 and reported on 2025-06-05. 986 Texas residents were affected. 39,779 individuals affected in total. Types of information involved: Social Security Number Information;Driver’s License number. Consumers were notified via U.S. Mail.
- 🦫Oregon State AGas victim2025-06-04
Lee Enterprises reported a data breach to the Oregon Attorney General. The breach was reported on 2025-06-04. The breach occurred during 2/3/2025. The breach was discovered on 5/28/2025. 39,779 individuals were affected. Notice was sent on 6/3/2025.
- 🐻California State AGas victim2025-06-04
Lee Enterprises notified the California AG of a data security incident affecting employee personal information. Unauthorized access occurred on February 1, 2025, and was first detected on February 3, 2025. The company engaged cybersecurity specialists, notified the FBI, and is offering identity theft protection services to affected individuals. No evidence of misuse was found.
- 🦬Montana State AGas victim2025-06-03
Lee Enterprises reported a data breach to the Montana Attorney General. The breach was reported on 2025-06-03. The breach occurred from 02/03/2028 to 02/03/2025. 1,542 Montana residents were affected.
- ⛰️New Hampshire State AGas victim2025-06-03
Lee Enterprises notified the NH Attorney General of a data security incident affecting approximately 17 New Hampshire residents. Unauthorized access to employee personal information (names and SSNs) occurred around Feb 1, 2025, detected Feb 3, 2025. Lee engaged cybersecurity experts, notified the FBI, and provided 12 months of credit monitoring.
- 🦞Maine State AGas victim2025-06-03
Lee Enterprises, a media company headquartered in Davenport, IA, notified the Maine AG on June 3, 2025 of an external system breach. A suspicious event first discovered on approximately February 3, 2025 resulted in unauthorized access or acquisition of files on February 1–3, 2025. The investigation was completed May 28, 2025. Affected data included names and Social Security numbers. 13 Maine residents were affected out of ~39,779 total. IDX credit monitoring (12 months) was offered.
- 🍁Vermont State AGas victim2025-06-03
Lee Enterprises notified consumers of a data security incident where unauthorized access to employee personal information occurred on or about February 1, 2025. The breach was discovered on February 3, 2025, and FBI was notified. Affected data included names and variable PII. Lee Enterprises engaged cybersecurity specialists and offered IDX identity theft protection services.
- FEDERALSEC 8-Kas victim2025-03-06
Lee Enterprises filed an 8-K/A (Amendment No. 1) supplementing its February 14, 2025 disclosure of a February 3, 2025 cybersecurity attack in which threat actors accessed its network, encrypted critical applications, and exfiltrated files. The threat has been contained; back-office functions (billing, collections, vendor payments) remain delayed. Investigation into whether PII was taken is ongoing. The Company expects a material financial impact and arranged a $3.7M covenant waiver from BH Finance LLC for liquidity.
- GLOBALLeak Siteas victim2025-02-27
All data will be published on March 5, 2025. We are preparing to share sensitive data with the public that could shed new light on Lee Enterprises, a prominent newspaper publishing firm active across all U.S. states. The documents we hold ab ...
- FEDERALSEC 8-Kas victim2025-02-18
Lee Enterprises disclosed a February 3, 2025 cybersecurity attack causing a systems outage. Threat actors accessed the network, encrypted critical applications, and exfiltrated files. Investigation into PII compromise is ongoing. The incident disrupted print distribution, billing, collections, and vendor payments. Weekly/ancillary products (~5% of revenue) remain unrestored as of February 12, 2025. The Company expects a material financial impact and maintains cybersecurity insurance.
- GLOBALLeak Siteas victim2025-02-03
All data will be published on March 5, 2025. We are preparing to share sensitive data with the public that could shed new light on Lee Enterprises, a prominent newspaper publishing firm active across all U.S. states. The documents we hold ab ...