COPART, INC.
ent_019e784679beaf66af0c0a266d6fa839
Disclosures
4
State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
1,390
as filed · State AG MA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- COPART, INC.
- Normalized
- copart— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300KVYX3JWMYEHU61
- SEC EDGAR CIK
- 0000900075
- Domain
- None on record
Disclosure history (4)newest first
- South Carolina State AGas victim2015-05-28
Copart, Inc. notified South Carolina residents that an unauthorized person gained access to its computer network on March 31, 2015. The incident may have exposed names, addresses, driver's license numbers, phone numbers, emails, and Copart.com account credentials. Copart engaged a cybersecurity firm and mandated password resets for all members.
- New Hampshire State AGas victim2015-05-27
Copart, Inc. notified the New Hampshire Attorney General on May 27, 2015, of a cybersecurity incident discovered on March 31, 2015. An unauthorized person accessed the network, potentially compromising member names, addresses, driver's license numbers, phone numbers, emails, and Copart.com usernames/passwords. 231 NH residents were notified. Copart engaged a cybersecurity firm, mandated password resets, and implemented enhanced security measures.
- Massachusetts State AGas victim2015-05-27
Copart reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2015-05-27. 1,390 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2015-05-27
On March 31, 2015, Copart Inc. discovered unauthorized access to its computer network. The incident potentially exposed names, addresses, driver's license numbers, telephone numbers, email addresses, and account credentials (usernames and passwords) for Copart.com members. Copart blocked further access, engaged a cybersecurity firm, and required all members to reset their passwords. Enhanced security measures were implemented.
Subsidiary disclosures (6)filed by group companies
◈ These filings were made by or about subsidiaries of COPART, INC. — not by COPART, INC. itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- Massachusetts State AGvia Cycle Express2023-05-15
Cycle Express, LLC dba National Powersport Auctions reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-05-15. 47 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGvia Cycle Express2023-05-15
National Powersport Auctions (dba Cycle Express) disclosed a cybersecurity incident in late February 2023 involving unauthorized access to its systems. The company locked down systems, notified federal law enforcement, and engaged forensic investigators. Potentially exposed files may have contained personal information. The company offered 24 months of complimentary credit monitoring and identity protection services.
- Indiana State AGvia Cycle Express2023-05-15
Cycle Express LLC dba National Powersport Auctions reported a data breach to the Indiana Attorney General. The breach occurred on 2023-02-21 and was reported on 2023-05-15. 180 Indiana residents were affected. 8,141 individuals affected in total.
- Maine State AGvia Cycle Express2023-05-15
Cycle Express, LLC (dba National Powersport Auctions) reported an external system breach (hacking) occurring on 02/21/2023 and discovered on 04/28/2023. The incident affected 8,141 individuals total, including 5 Maine residents. Acquired data included names and driver's license numbers. The entity provided 24 months of Experian IdentityWorks to affected individuals.
- New Hampshire State AGvia Cycle Express2023-05-15
Cycle Express, LLC (d/b/a National Powersport Auctions) reported a ransomware attack in late Feb/early March 2023 affecting 43 New Hampshire residents. Personal information was exposed. NPA locked down systems, notified law enforcement, and engaged forensic experts. Notifications sent May 15, 2023, offering 2 years of credit monitoring.
- California State AGvia Cycle Express2023-05-15
Cycle Express, LLC dba National Powersport Auctions reported a cybersecurity incident involving unauthorized access to certain systems on February 21, 2023. The company locked down systems, notified federal law enforcement, and engaged a cyber forensics team. The incident was contained. Personal information, including basic identity data, may have been exposed. The company is offering 24 months of credit monitoring to affected individuals.