Warner Music Group
ent_af63959e83904efdbbca9b43
Disclosures
4
State AG · 4 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
3,368
as filed · State AG WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Warner Music Group
- Normalized
- warner music— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- 🌴South Carolina State AGas victim2020-09-02
Warner Music Group (WMG) disclosed a cybersecurity incident involving its US-based e-commerce websites, hosted by an external service provider. Between April 25 and August 5, 2020, an unauthorized third party potentially acquired personal information entered by customers, including names, contact details, and payment card data (excluding PayPal transactions). WMG engaged forensic experts, notified law enforcement and credit card providers, and offered 12 months of free identity monitoring via Kroll.
- 🦬Montana State AGas victim2020-09-02
Warner Music Group reported a data breach to the Montana Attorney General. The breach was reported on 2020-09-02. The breach occurred from 4/25/2020 to 8/5/2020. 310 Montana residents were affected.
- 🐻California State AGas victim2020-09-02
Warner Music Group (WMG) disclosed a cybersecurity incident affecting its US-based e-commerce websites, hosted by an external service provider. Between April 25, 2020, and August 5, 2020, an unauthorized third party potentially acquired personal information, including names, addresses, and payment card details (card number, CVC/CVV, expiration date). Payments via PayPal were unaffected. WMG engaged forensic experts, notified credit card providers and law enforcement, and offered 12 months of free identity monitoring through Kroll.
- 🌲Washington State AGas victim2020-09-02
Warner Music Group, a business sector entity reported a malware incident to the Washington Attorney General. The organization became aware of the incident on 2020-08-05 and filed notice on 2020-09-02. 3,368 Washington residents were affected. 28 days elapsed between awareness and notification. 102 days to identify the breach. 0 days to contain the breach.