Jacuzzi Inc.
ent_d4da023906f5b8092d85f5f0
Disclosures
6
State AG · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
5,684
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Jacuzzi Inc.
- Normalized
- jacuzzi— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (6)newest first
- Massachusetts State AGas victim2021-02-23
Jacuzzi Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-02-23. 3 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2021-02-23
Jacuzzi Inc. experienced an external system breach on December 15, 2020, which was also the date of discovery. The breach compromised names or other personal identifiers in combination with financial account numbers or credit/debit card numbers, along with their security codes, access codes, passwords, or PINs. A total of 5,684 individuals were affected, including one resident of Maine. Consumers were notified on February 23, 2021. The company offered two years of credit monitoring, fraud consultation, and identity theft restoration services through Kroll.
- New Hampshire State AGas victim2021-02-23
Jacuzzi Inc. notified the NH AG of a ransomware attack. Malware encrypted devices and prepared files for exfiltration on Dec 15, 2020. Access was disabled Dec 18. On Jan 27, 2021, Jacuzzi determined employee/beneficiary PII (SSN, bank info, DOB, health info) was potentially accessed. 2 NH residents notified on Feb 23, 2021. Credit monitoring offered.
- Indiana State AGas victim2021-02-23
Jacuzzi, Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2020-12-15 and was reported on 2021-02-23. 16 Indiana residents were affected. 5,684 individuals affected in total.
- Montana State AGas victim2021-02-23
Jacuzzi Inc. disclosed a ransomware attack on its network. Unauthorized access occurred on December 15, 2021, resulting in data encryption and preparation of files for removal. The company determined on January 27, 2021, that files may have contained employee PII including SSNs, bank info, and health data. Notices were sent February 23, 2021. The incident is resolved; Kroll provided 2 years of identity monitoring.
- Montana State AGas victim2017-09-11
Jacuzzi Brands LLC notified Montana AG of a data breach where payroll vendor Ceridian inadvertently emailed password-protected files containing employee PII (names, SSNs, bank info) to another customer on Sept 1, 2017. The error was discovered on Sept 5. The recipient did not access the data. Credit monitoring offered.