YRC Worldwide
ent_5f579ecf95e2ddc82e2c506b
Disclosures
4
State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
166
as filed · State AG MA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- YRC Worldwide
- Normalized
- yrc worldwide— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- Massachusetts State AGas victim2018-09-21
YRC Worldwide Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2018-09-21. 166 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas victim2018-09-21
YRC Worldwide Inc. notified the NH Attorney General of a data security incident involving 52 New Hampshire residents. On July 24, 2018, YRC detected a phishing email with a malicious link that allowed an attacker to establish a forwarding rule on an Office 365 account. The attacker accessed an employment-related spreadsheet containing names and social security numbers of current and former employees. YRC engaged forensic investigators, notified law enforcement, and enhanced IT security. Affected individuals are offered two years of credit monitoring and identity protection.
- Montana State AGas victim2018-09-21
YRC Worldwide notified employees of a phishing attack on July 24, 2018, which led to unauthorized access to email accounts and exfiltration of names and SSNs. YRC engaged forensic investigators and law enforcement, and offered two years of credit monitoring to affected individuals.
- California State AGas victim2018-09-21
YRC Worldwide Inc. filed a data breach notification with the California Attorney General. The breach occurred on July 24, 2018. The provided source document contains only the filing metadata and an empty attachment placeholder; no narrative details regarding the nature of the breach, data types affected, or number of individuals impacted are available in the text.