PANDA RESTAURANT GROUP, INC.
ent_019e231fc3d38c99a86eacde84ead80c
Disclosures
9
State AG · 9 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
239,815
nationwide · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- PANDA RESTAURANT GROUP, INC.
- Normalized
- panda restaurant— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300Y6SJAJ9X2VJ639
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (9)newest first
- Massachusetts State AGas victim2024-05-01
Panda Restaurant Group, Inc. (PRG) reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2024-05-01. 444 Massachusetts residents were affected.
- Montana State AGas victim2024-04-30
Panda Restaurant Group, Inc. disclosed a data breach where unauthorized actors accessed corporate systems between March 7-11, 2024. The company detected the incident on March 10, 2024. Personal information including names and government IDs was compromised. Panda engaged third-party cybersecurity experts and law enforcement, implemented technical safeguards, and offered credit monitoring services.
- Oregon State AGas victim2024-04-30
Panda Restaurant Group, Inc. (PRG) reported a data breach to the Oregon Attorney General. The breach was reported on 2024-04-30. The breach occurred during 3/7/2024 - 3/11/2024. The breach was discovered on 3/10/2024. 239,815 individuals were affected. Notice was sent on 4/30/2024.
- Maine State AGas victim2024-04-30
Panda Restaurant Group, Inc. (PRG) experienced an external system breach on March 7, 2024, which was discovered on March 10, 2024. The breach affected 64 Maine residents, compromising their names and driver's license or non-driver identification card numbers. PRG notified the affected individuals on April 30, 2024, and offered identity theft protection services through Epiq eDiscovery Solutions.
- California State AGas victim2024-04-30
Panda Restaurant Group, Inc. detected a data security incident on March 10, 2024, impacting corporate systems. An unauthorized actor accessed certain information between March 7-11, 2024. Affected data includes names and potentially Social Security Numbers. The company secured its environment, engaged third-party cybersecurity experts, and worked with law enforcement. Credit monitoring services are being offered to affected individuals.
- Washington State AGas victim2024-04-30
Panda Restaurant Group, Inc. reported a cyberattack affecting corporate systems. Unauthorized access occurred March 7-11, 2024, detected March 10, 2024. The incident involved malware/ransomware, resulting in the exfiltration of personal information including names and government IDs (SSN, driver's license). 6,916 Washington residents were notified. The company engaged forensic specialists and law enforcement, implemented technical safeguards, and offered credit monitoring.
- Vermont State AGas victim2024-04-30
Panda Restaurant Group, Inc. notified consumers of a data security incident detected on March 10, 2024. Unauthorized access occurred between March 7-11, 2024, affecting personal information including names and government identifiers (SSN, driver's license). The company engaged third-party cybersecurity experts and law enforcement, implemented technical safeguards, and offered credit monitoring services.
- New Hampshire State AGas victim2024-04-29
Panda Restaurant Group, Inc. reported a data security incident affecting corporate systems. Unauthorized access occurred between March 7-11, 2024, detected on March 10, 2024. The incident involved personal information including names combined with other identifiers. Panda engaged third-party cybersecurity experts and law enforcement, implemented additional technical safeguards, and offered credit monitoring services to affected individuals.
- Illinois State AGas victim2024-04-01
PANDA RESTAURANT GROUP, INC. filed a data-breach notice with the Illinois Attorney General in April 2024 (case 24-04-041). The register records the breach as discovered on March 7, 2024. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.