Great Northern Corporation
ent_e7f018194a2691d7238d8c1e
Disclosures
5
State AG · 5 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
5,097
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Great Northern Corporation
- Normalized
- great northern— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- greatnortherncorp.com
Disclosure history (5)newest first
- New Hampshire State AGas victim2021-02-18
Great Northern Corporation notified the NH AG of a September 5, 2020 malware incident affecting 4 NH residents. Data included names, SSNs, and financial account info. GNC engaged forensic specialists, notified law enforcement, and offered 12 months of credit monitoring.
- Maine State AGas victim2021-02-09
Great Northern Corporation, a commercial entity based in Appleton, WI, reported a ransomware incident on September 5, 2020, discovered on December 21, 2020. The breach affected 5,097 individuals, including one Maine resident. Personal information, specifically Social Security Numbers, was compromised. The company provided 12 months of credit monitoring through TransUnion.
- Massachusetts State AGas victim2021-02-09
Great Northern Corporation reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-02-09. 3 Massachusetts residents were affected. The report records the breach type as electronic.
- Indiana State AGas victim2021-02-09
Great Northern Corporation reported a data breach to the Indiana Attorney General. The breach occurred on 2020-08-26 and was reported on 2021-02-09. 13 Indiana residents were affected. 5,097 individuals affected in total.
- Illinois State AGas victim2021-01-01
GREAT NOTHERN CORPORATION filed a data-breach notice with the Illinois Attorney General during 2021 (case 21-045). The register records the breach as discovered on September 5, 2020. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.