REI Co-Op
ent_f5fd92f277597a96f4d02227
Disclosures
4
State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
363
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- REI Co-Op
- Normalized
- rei co op— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- New Hampshire State AGas victim2020-09-17
REI Co-op notified the NH AG of a phishing incident where an unauthorized party accessed a vendor email account. The attacker obtained credentials via phishing on May 1, 2020, and accessed the account on May 12. Data potentially accessible included names and SSNs of 2 NH residents. REI disabled access, notified law enforcement, and engaged forensic reviewers.
- Montana State AGas victim2020-09-16
REI Co-op notified Montana and other state residents of a cybersecurity incident discovered on May 13, 2020, where an unauthorized party may have accessed personal information including names, addresses, emails, and SSNs from supplier and contributor forms. REI secured systems, engaged law enforcement and a cybersecurity firm, and offered one year of identity monitoring.
- Massachusetts State AGas victim2020-09-16
REI Co-Op reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-09-16. 3 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2020-09-16
REI Co-Op reported an external system breach that occurred on May 12, 2020, and was discovered the following day. The breach compromised the names and Social Security numbers of 363 individuals. Affected parties were notified in writing on September 16, 2020, and were offered credit and identity monitoring services through Kroll.