The UPS Store, Inc.
ent_23d86cf27bd9ffd4260be94f
Disclosures
7
State AG · 3 jurisdictions
Incidents
2
filings grouped by incident
Max affected reported
963
as filed · State AG WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- The UPS Store, Inc.
- Normalized
- the ups store— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- theupsstore.com
- Corporate parent
- UNITED PARCEL SERVICE, INC.— per SEC Exhibit 21 filing
Disclosure history (7)newest first
- 🦬Montana State AGas victim2020-01-20
The UPS Store, Inc. reported a data breach to the Montana Attorney General. The breach was reported on 2020-01-20. The breach occurred from 9/29/2019 to 1/13/2020. 70 Montana residents were affected.
- 🌲Washington State AGas victim2020-01-20
The UPS Store, Inc., a business sector entity reported a phishing incident to the Washington Attorney General. The organization became aware of the incident on 2019-12-18 and filed notice on 2020-01-20. 963 Washington residents were affected. 33 days elapsed between awareness and notification. 80 days to identify the breach. 26 days to contain the breach.
- 🐻California State AGas victim2020-01-20
The UPS Store, Inc. reported a phishing incident affecting local store email accounts between September 29, 2020, and January 13, 2020. Unauthorized access was gained to a limited number of accounts containing customer documents with personal information (names, addresses). The company engaged a third-party cybersecurity firm, notified law enforcement, and offered 24 months of credit monitoring. No misuse was known at the time of filing.
- 🐻California State AGas victim2019-11-27
The UPS Store, Inc. reported a phishing incident occurring between October 11 and 22, 2019, where unauthorized persons accessed local store email accounts. Personal information, including names and potentially other data contained in documents emailed for printing services, was exposed. The company engaged a third-party cybersecurity firm, notified law enforcement, and offered 24 months of identity monitoring to affected individuals.
- 🦬Montana State AGas victim2019-11-27
The UPS Store, Inc. reported a data breach to the Montana Attorney General. The breach was reported on 2019-11-27. The breach occurred from 10/11/2019 to 10/22/2019. 2 Montana residents were affected.
- 🌲Washington State AGas victim2019-11-26
The UPS Store, Inc., a business sector entity reported a phishing incident to the Washington Attorney General. The organization became aware of the incident on 2019-10-18 and filed notice on 2019-11-26. 506 Washington residents were affected. 39 days elapsed between awareness and notification. 7 days to identify the breach. 4 days to contain the breach.
- 🐻California State AGas victim2014-08-20
The UPS Store, Inc. discovered malware at 51 of its 4,470 franchised center locations across 24 states following a government bulletin about a broad-based malware intrusion targeting U.S. retailers. The malware was present between January 20 and August 11, 2014, potentially exposing customer names, postal addresses, email addresses, payment card information, and — for MailBox Manager account holders — Social Security numbers and driver's license numbers. Franchise owner login credentials were also potentially exposed. The company retained an IT security firm, implemented system enhancements and antivirus updates, and arranged free identity protection and credit monitoring through AllClear ID.