CORNERSTONE BUILDING BRANDS, INC.
ent_019e23033cbe4cf08e0006e9cf41236b
Disclosures
8
State AG · 6 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
409
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- CORNERSTONE BUILDING BRANDS, INC.
- Normalized
- cornerstone building brands— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300IW41QEWQ6T0H29
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (8)newest first
- Maine State AGas victim2021-05-21
Cornerstone Building Brands experienced an external system breach (hacking) on December 24, 2020, which was discovered on May 21, 2021. The breach affected one Maine resident, whose name and Social Security Number were compromised. The company offered one year of credit monitoring and identity theft protection services through Kroll.
- Montana State AGas victim2021-05-21
Cornerstone Building Brands notified individuals of a security incident in late December 2020 where an unauthorized party accessed employee information. The company engaged forensic investigators and law enforcement. Affected data likely included PII and financial data. One-year identity monitoring via Kroll was offered.
- Indiana State AGas victim2021-05-21
Cornerstone Building Brands reported a data breach to the Indiana Attorney General. The breach occurred on 2020-11-30 and was reported on 2021-05-21. 3 Indiana residents were affected. 409 individuals affected in total.
- New Hampshire State AGas victim2020-04-08
Cornerstone Building Brands filed a supplemental notice with the NH AG regarding a security incident where an unauthorized person accessed two employee email accounts between April 1-2, 2019. The incident exposed names, financial account numbers, and payment card numbers of 9 NH residents. The company engaged a cybersecurity firm, secured accounts, and provided one year of identity monitoring via Kroll.
- California State AGas victim2019-09-11
Cornerstone Building Brands, Inc. reported that an unauthorized person accessed two employees' email accounts between April 1 and April 2, 2019. The investigation determined that personal information, including names and addresses, may have been accessed or viewed. The company secured the accounts, engaged a cybersecurity firm, and offered one year of identity monitoring services to affected individuals.
- Massachusetts State AGas victim2019-09-11
Cornerstone Building Brands, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-09-11. 12 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas victim2019-09-11
Cornerstone Building Brands, Inc. notified Montana residents that an unauthorized person accessed two employees' email accounts between April 1-2, 2019. The incident may have exposed personal information. The company engaged a cybersecurity firm, secured accounts, and offered one year of free identity monitoring via Kroll.
- New Hampshire State AGas victim2019-09-10
Cornerstone Building Brands, Inc. notified the NH AG that an unauthorized person accessed two employee email accounts between April 1-2, 2019. On August 16, 2019, the company determined 8 NH residents' PII (names, SSNs, financial/payment card info) was accessed. Notifications were sent September 11, 2019, offering 1 year of credit monitoring.
Subsidiary disclosures (5)filed by group companies
◈ These filings were made by or about subsidiaries of CORNERSTONE BUILDING BRANDS, INC. — not by CORNERSTONE BUILDING BRANDS, INC. itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- GLOBALLeak Sitevia Metal Sales Manufacturing Corporation2025-04-04
**Website**: metalsales.us.com **Revenue**: $270.1 Million Metal Sales is the largest manufacturer of metal roofing, wall, and building systems in the United States, also offering metal fabrication
- Massachusetts State AGvia NCI Group, Inc.2017-10-10
NCI Group Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2017-10-10. 6 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGvia NCI Group, Inc.2017-09-22
NCI Group, Inc. notified Montana residents that on August 8, 2017, an unknown individual accessed three employee email accounts via phishing, exposing customer names and Social Security numbers. NCI engaged forensic investigators and Kroll for one year of identity monitoring.
- New Hampshire State AGvia NCI Group, Inc.2017-09-22
NCI Group, Inc. notified the NH Attorney General that an unknown individual accessed three employee email accounts on August 8, 2017. The accounts contained customer PII including SSNs, driver's licenses, and payment card data. 3 NH residents were notified. NCI engaged forensic investigators and offered 1 year of credit monitoring.
- Massachusetts State AGvia NCI Group, Inc.2017-09-22
NCI Group, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2017-09-22. 6 Massachusetts residents were affected. The report records the breach type as electronic.