Orbitz Worldwide, LLC
ent_019e5b5c48bd95a7fb48e79921813e32
Disclosures
15
State AG · 8 jurisdictions
Multi-filing incidents
3
incidents joining 2+ filings here
Max affected reported
328,612
nationwide · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Orbitz Worldwide, LLC
- Normalized
- orbitz worldwide— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300JPNH9MBSIY6N93
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (15)newest first
- New Hampshire State AGas victim2018-05-23
Orbitz experienced a security incident affecting its travel booking platform between Oct 1, 2017 and Dec 22, 2017. Amtrak notified the NH AG on May 23, 2018 that 14 NH residents' data (names, payment cards, DOB, contact info) may have been accessed. Orbitz engaged forensic investigators and law enforcement, enhanced security, and offered credit monitoring.
- Montana State AGas victim2018-05-04
Orbitz notified Montana residents of a data breach affecting its legacy travel booking platform. Unauthorized access occurred between October 1, 2017, and December 22, 2017. Orbitz discovered the incident on March 1, 2018. Compromised data included names, payment card info, DOB, phone, email, and addresses. No SSNs were involved. Orbitz engaged forensic investigators, notified law enforcement, and offered one year of credit monitoring.
- Hawaii State AGas victim2018-04-04
Orbitz, LLC notified customers of a data breach on a legacy travel booking platform. Unauthorized access occurred between October 1, 2017, and December 22, 2017. The incident likely exposed names, payment card info, DOB, phone, email, and addresses. Orbitz engaged forensic investigators and law enforcement, and offered one year of credit monitoring.
- South Carolina State AGas victim2018-03-28
Orbitz notified customers of a data breach on its legacy travel booking platform. Unauthorized access occurred between October 1, 2017, and December 22, 2017. The incident likely exposed names, payment card info, DOB, phone, email, and address. Orbitz engaged forensic investigators and law enforcement, and offered one year of credit monitoring.
- New Hampshire State AGas victim2018-03-26
RBC Royal Bank submitted a supplemental notice to the New Hampshire Attorney General regarding a data breach affecting Orbitz's legacy travel booking platform. Unauthorized access occurred between January 1, 2016, and December 22, 2017. The breach exposed names, addresses, phone numbers, and incomplete payment card information for 2 New Hampshire residents. RBC and Orbitz notified affected individuals starting January 31, 2018, and offered credit monitoring services.
- Massachusetts State AGas victim2018-03-21
Orbitz Worldwide Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-03-21. 7,579 Massachusetts residents were affected. The report records the breach type as electronic.
- Oregon State AGas victim2018-03-21
Orbitz reported a data breach to the Oregon Attorney General. The breach was reported on 2018-03-21. The breach occurred during 10/1/2017 - 12/22/2017. The breach was discovered on 3/1/2018. 328,612 individuals were affected. Notice was sent on 3/22/20183/23/2018.
- California State AGas victim2018-03-21
Orbitz disclosed unauthorized access to a legacy travel booking platform between October 1, 2017, and December 22, 2017. The incident was discovered on March 1, 2018. Affected data included names, payment card information, dates of birth, phone numbers, email addresses, physical/billing addresses, and gender. Social Security numbers and passport/travel itinerary information were not involved. Orbitz engaged third-party forensic experts, worked with law enforcement, enhanced security monitoring, and offered one year of complimentary credit monitoring and identity protection to affected customers.
- Washington State AGas victim2018-03-20
Orbitz notified Washington AG of a cyberattack on its legacy travel booking platform. Unauthorized access occurred between Oct 1 and Dec 22, 2017, discovered March 1, 2018. Data accessed included names, payment card info, DOB, phone, email, and addresses. 5,013 Washington residents affected. Notifications sent March 22-23, 2018. Credit monitoring offered.
- New Hampshire State AGas victim2018-03-20
Orbitz notified New Hampshire residents of a data breach on its legacy travel booking platform. Unauthorized access occurred between Oct 1 and Dec 22, 2017. Data accessed included names, payment card info, DOB, and contact details. Approximately 1,523 NH residents affected. Orbitz engaged forensic investigators and law enforcement, and offered one year of credit monitoring.
- Massachusetts State AGas victim2010-11-01
Orbitz Worldwide, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2010-11-01. 2 Massachusetts residents were affected. The report records the breach type as electronic.
- Massachusetts State AGas victim2010-10-05
Orbitz Worldwide ("Orbitz") reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2010-10-05. 1 Massachusetts residents were affected. The report records the breach type as electronic.
- Massachusetts State AGas victim2009-12-03
Orbitz Worldwide reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2009-12-03. 1 Massachusetts residents were affected. The report records the breach type as electronic.
- Massachusetts State AGas victim2008-09-26
Orbitz Worldwide reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2008-09-26. 1 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas victim2008-09-24
Orbitz Worldwide notified the NH AG of a laptop theft from an employee's car in Chicago on Sept 8, 2008. Discovered Sept 9. Laptop contained employee PII including SSNs. 1 NH resident affected. Remediation included encryption acceleration and credit monitoring.
Supply-chain cascadesreviewed and confirmed
- Orbitz Worldwide, LLC supply-chain incident (2018)2018-03-22 – 2018-06-086 organizations linked