Construction Supply Group
ent_9ee1c29313c14e6bac152bc9
Disclosures
4
State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
503
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Construction Supply Group
- Normalized
- construction supply— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- Indiana State AGas victim2022-05-06
Construction Supply Group reported a data breach to the Indiana Attorney General. The breach occurred on 2021-09-22 and was reported on 2022-05-06. 5 Indiana residents were affected. 503 individuals affected in total.
- New Hampshire State AGas victim2022-05-06
Construction Supply Group, a Denver-based construction supplier, notified the New Hampshire Attorney General of a cybersecurity incident involving unauthorized access to its network. The breach occurred between September 22, 2021, and January 17, 2022. The company determined on April 6, 2022, that files containing Social Security numbers, driver’s license numbers, and financial account information were accessed. One New Hampshire resident was affected. The company engaged a cybersecurity firm, notified law enforcement, and offered one year of credit monitoring through Equifax.
- Massachusetts State AGas victim2022-05-06
Construction Supply Group reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2022-05-06. 1 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas victim2022-05-06
Construction Supply Group notified Montana residents of a cybersecurity incident where unauthorized access to its network resulted in the exfiltration of files containing names, SSNs, driver's license numbers, and financial account information. The unauthorized access occurred between September 22, 2021, and January 17, 2022. The company engaged a cybersecurity firm, notified law enforcement, and offered one year of credit monitoring.