Dun & Bradstreet Holdings, Inc.
ent_019de5f4714d2c2214e13e3c512b24cc
Disclosures
2
SEC 10-K Item 1C · State AG · 2 jurisdictions
Incidents
—
no linked incident in sample
Max affected reported
—
no filed count in sample
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Dun & Bradstreet Holdings, Inc.
- Normalized
- dun bradstreet— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 254900LNALVKD1ZX7U27
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- FEDERALSEC 10-K Item 1Cas victim2024-02-22
Dun & Bradstreet's 10-K Item 1C discloses its cybersecurity risk management framework, including its ERM, Cyber, and C&E programs, board and audit committee oversight, incident response procedures, and third-party risk management practices. The company states it does not believe prior cybersecurity incidents have materially affected its business strategy, results of operations, or financial condition. No specific breach or incident is disclosed.
- 🐻California State AGas victim2013-10-28
Dun & Bradstreet notified California AG that a criminal cyberattack in March-April 2013 resulted in unauthorized access to a commercial database. Exposed data included names and business identification numbers, potentially including Social Security Numbers. The incident is contained, and 12 months of identity protection was provided to affected individuals.