Dunkin' Brands, Inc.
ent_019e628556343e7cf9a14067d17bd6f2
Disclosures
8
State AG · 5 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
18,304
as filed · State AG MA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Dunkin' Brands, Inc.
- Normalized
- dunkin brands— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 2BD6A66TQN3SMNY1KD33
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (8)newest first
- New Hampshire State AGas victim2019-02-08
Dunkin' Brands Inc. notified New Hampshire residents that third parties used stolen credentials from other breaches to access DD Perks accounts. The incident involved usernames, passwords, names, emails, and account numbers. Dunkin' forced password resets and replaced stored value card numbers. No internal systems were breached.
- Massachusetts State AGas victim2019-02-08
Dunkin Brands Inc reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-02-08. 132 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2018-11-28
Dunkin' Brands Inc. notified customers that third parties used credentials stolen from other companies' breaches to attempt to log into DD Perks accounts. The company learned of the attempts on October 31, 2018. Affected data may include names, email addresses, and account numbers. Dunkin' forced password resets and replaced stored value cards.
- South Carolina State AGas victim2018-11-28
Dunkin Brands, Inc. notified South Carolina residents that third parties used stolen credentials from other breaches to attempt unauthorized access to DD Perks accounts. The incident was discovered on October 31, 2018. Affected data included names, email addresses, and account numbers. Dunkin forced password resets and replaced stored value cards.
- Massachusetts State AGas victim2018-11-28
Dunkin' Brands Inc reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-11-28. 18,304 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas victim2018-11-28
Dunkin' Brands notified Montana residents that third parties used stolen credentials from other breaches to access DD Perks accounts. The incident was discovered on October 31, 2018. Affected data included names, email addresses, and account numbers. Dunkin' forced password resets and replaced stored value cards.
- New Hampshire State AGas victim2018-11-28
Dunkin Brands Inc notified NH AG of credential stuffing attacks on DD Perks accounts using stolen credentials from other breaches. No internal systems breached. Affected NH residents' names, emails, and account numbers. Passwords reset, stored value cards replaced.
- Massachusetts State AGas victim2018-07-11
Dunkin Brands Inc reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-07-11. 1 Massachusetts residents were affected. The report records the breach type as electronic.