SHELL USA, INC.
ent_019fad78ccb517f6ba77b48c801fbe69
Disclosures
2
State AG · 2 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
27
as filed · State AG MA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- SHELL USA, INC.
- Normalized
- shell usa— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300UYFI41EIQ10304
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
- Corporate parent
- SHELL PLC— per GLEIF relationship records
Disclosure history (2)newest first
- New Hampshire State AGas victim2023-07-27
Shell USA, Inc. notified the NH Attorney General of a cybersecurity event involving the MOVEit Transfer software vulnerability. On May 31, 2023, Shell discovered unauthorized access to personal data of one New Hampshire resident, an employee of BG Group (a Shell affiliate). The attack was attributed to the CL0P hacker group exploiting a vulnerability in Progress Software's MOVEit Transfer. Data was exfiltrated. Shell patched the vulnerability on June 1, 2023, and contained the incident. Affected individuals were offered complimentary Experian IdentityWorks services.
- Massachusetts State AGas victim2023-07-26
Shell USA, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-07-26. 27 Massachusetts residents were affected. The report records the breach type as electronic.