Epik Holdings, Inc.
ent_7548a45444e736e99e07df91
Disclosures
5
State AG · 5 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
110,000
as filed · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Epik Holdings, Inc.
- Normalized
- epik holdings— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- epik.com
Disclosure history (5)newest first
- 🦫Oregon State AGas victim2021-09-22
Epik Holdings, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2021-09-22. The breach occurred during 9/13/2021. The breach was discovered on 9/15/2021. 110,000 individuals were affected. Notice was sent on 9/20/2021.
- 🌲Washington State AGas victim2021-09-22
Epik Holdings, Inc., a business sector entity reported a unauthorized access incident to the Washington Attorney General. The organization became aware of the incident on 2021-09-15 and filed notice on 2021-09-22. 2,040 Washington residents were affected. 7 days elapsed between awareness and notification. 2 days to identify the breach.
- 🦞Maine State AGas victim2021-09-22
Epik Holdings, Inc. reported an external system breach (hacking) that occurred on September 13, 2021, and was discovered on September 15, 2021. The breach affected 190 Maine residents, part of a total of 110,000 individuals. The compromised information included names in combination with financial account numbers or credit/debit card numbers and their security codes. Epik Holdings provided electronic notification to the affected consumers on September 20, 2021, and offered two years of identity theft protection services through Experian.
- ⛰️New Hampshire State AGas victim2021-09-22
Epik Holdings, Inc. disclosed a security breach affecting New Hampshire residents. Unauthorized third parties accessed a backup copy of domain-side service accounts on or before September 13, 2021. Data exposed includes names, addresses, emails, passwords, and credit card info for a subset. Approximately 300 NH residents were impacted. Epik secured services, engaged forensic partners, and offered credit monitoring.
- 🐻California State AGas victim2021-09-20
Epik Holdings, Inc. confirmed a data intrusion on September 15, 2021, involving unauthorized access to a backup copy of domain-side service accounts on or before September 13, 2021. Affected data includes names, addresses, emails, usernames, passwords, phone numbers, VAT numbers, transaction history, domain ownership, and for some users, credit card information. Epik retained cybersecurity partners, secured services, and offered credit monitoring.