Keolis Commuter Services
ent_c0cd7bf3b784262eec767e89
Disclosures
3
State AG · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
8,746
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Keolis Commuter Services
- Normalized
- keolis commuter— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- keoliscs.com
Disclosure history (3)newest first
- New Hampshire State AGas victim2020-11-12
Keolis Commuter Services experienced a ransomware event on October 10, 2020, affecting 869 New Hampshire residents. The incident involved the encryption of files and subsequent exfiltration of employee and dependent PII, including SSNs, driver's license numbers, and medical data. Keolis contained the breach by deactivating the network, notified law enforcement, and engaged forensic experts. Notifications were sent on November 10, 2020, offering two years of credit monitoring.
- Massachusetts State AGas victim2020-11-10
Keolis Commuter Services reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-11-10. 7,229 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2020-11-10
Keolis Commuter Services experienced an external system breach on October 10, 2020, which was also discovered on the same day. The incident affected 8,746 individuals, compromising their names and driver's license or non-driver identification card numbers. Written notifications were sent to affected parties on November 10, 2020, and 24 months of identity protection services from Experian were offered.