STERICYCLE, INC.
ent_019e5b5f300761f81b54d1fe40a76612
Disclosures
7
State AG · 7 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
80,890
nationwide · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- STERICYCLE, INC.
- Normalized
- stericycle— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- B8PTJH2P0AXSWSMP2136
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (7)newest first
- Massachusetts State AGas victim2020-09-11
Stericycle, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-09-11. 553 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas victim2020-08-31
Stericycle, Inc. notified the NH AG of a phishing incident affecting 154 NH residents. Unauthorized access to employee email accounts occurred between Oct 2019 and Apr 2020. Personal info including SSNs, driver's licenses, and financial data was potentially exposed. No evidence of actual access to specific PII-containing messages was found. Credit monitoring offered.
- California State AGas victim2020-08-31
Stericycle, Inc. notified California residents of a data security incident involving email phishing attempts targeting employees. Unauthorized access to employee email accounts occurred between October 2019 and April 2020. While personal information (including SSNs, financial account numbers, and health info) was present in affected accounts, there is no evidence it was accessed. Stericycle secured accounts, updated security controls, and offered 24 months of credit monitoring.
- Oregon State AGas victim2020-08-31
Stericycle, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2020-08-31. The breach occurred during 10/1/2019 - 4/8/2020. The breach was discovered on 7/27/2020. 80,890 individuals were affected. Notice was sent on 8/26/2020.
- Washington State AGas victim2020-08-26
Stericycle, Inc. notified the Washington Attorney General of a security incident affecting 1,284 Washington residents. Unauthorized access to employee email accounts occurred between October 2019 and April 2020 via phishing. Personal information including SSNs, driver's licenses, and health insurance data was potentially exposed. No evidence of actual data access was found. Stericycle engaged forensic investigators, secured accounts, and provided 24 months of credit monitoring.
- Indiana State AGas victim2020-08-26
Stericycle, Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2019-10-01 and was reported on 2020-08-26. 1,582 Indiana residents were affected. 80,890 individuals affected in total.
- Montana State AGas victim2020-08-26
Stericycle, Inc. notified Montana residents of a data security incident involving unauthorized access to employee email accounts via phishing. Access occurred between October 2019 and April 2020. Personal information including SSNs, driver's licenses, and financial data may have been present in accessed emails. No evidence of actual access to specific PII was found. Stericycle secured accounts, updated security controls, and provided 24 months of credit monitoring.