Alaska Air Group, Inc.
ent_019ec6ea02c6e982c4c4f3d7b9bf33ab
Disclosures
2
SEC 8-K · State AG · 2 jurisdictions
Incidents
—
no linked incident in sample
Max affected reported
—
no filed count in sample
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Alaska Air Group, Inc.
- Normalized
- alaska air— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 529900G48RT4KWLC6C27
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- FEDERALSEC 8-Kas reporting2025-06-27
Alaska Air Group, Inc. filed an 8-K on June 27, 2025, reporting a cybersecurity incident identified on June 23, 2025, affecting its subsidiary, Hawaiian Airlines. The Company engaged authorities and experts for investigation and remediation. Materiality was not yet determined at the time of filing. No specific data types or affected individual counts were disclosed.
- 🐻California State AGas reporting2017-07-26
Virgin America notified the California Attorney General that an outside party gained unauthorized access to its information systems containing employee and contractor login credentials. The incident was discovered on March 13, 2017. Virgin America engaged forensic experts, notified law enforcement, and required affected individuals to reset passwords.
Subsidiary disclosures (3)filed by group companies
◈ These filings were made by or about subsidiaries of Alaska Air Group, Inc. — not by Alaska Air Group, Inc. itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- 🦫Oregon State AGvia ALASKA AIRLINES, INC.2018-05-04
Alaska Airlines, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2018-05-04. The breach occurred during 10/1/2017 - 12/22/2017. The breach was discovered on 3/19/2018. 4,102 individuals were affected. Notice was sent on 5/4/2018.
- ⛰️New Hampshire State AGvia ALASKA AIRLINES, INC.2018-05-03
Alaska Airlines notified the New Hampshire Attorney General of a data breach involving its third-party provider, Orbitz. Unauthorized access to a legacy Orbitz platform occurred between October 1, 2017, and December 22, 2017. The breach potentially exposed personal data (names, DOB, phone, email, address, gender) and credit card information for reservations made between Jan 1, 2016, and Dec 5, 2016. Approximately 4 New Hampshire residents were affected. Access was halted by Dec 22, 2017. Affected individuals were offered identity theft repair and 12 months of credit monitoring.
- 🌲Washington State AGvia ALASKA AIRLINES, INC.2018-05-03
Alaska Airlines, a business sector entity reported a unclear/unknown incident to the Washington Attorney General. The organization became aware of the incident on 2018-03-19 and filed notice on 2018-05-03. 1,442 Washington residents were affected. 45 days elapsed between awareness and notification. 169 days to identify the breach. 0 days to contain the breach.