Confirmed breach. Intrusion Aug 23, 2017, discovered Aug 23, 2017 — the first regulatory filing landed 26 days later. 58,774 individuals reported across the linked filings.
W. W. Grainger, Inc. reported to HHS on 2017-09-18 a Theft affecting 1594 individuals. Breached information located on Laptop. An employee's laptop containing PHI (names, DOB, SSN, addresses) was stolen from an unlocked vehicle. WWGI implemented administrative safeguards and retrained staff.
Affected (this filing): 1,594
Most recent
4 State AG filingsSep 18, 2017 – Sep 20, 2017ExpandCollapse
WAMTCAOR
Washington State AG
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
W.W. Grainger, Inc., a business sector entity reported a theft or mistake incident to the Washington Attorney General. The organization became aware of the incident on 2017-08-23 and filed notice on 2017-09-18. 725 Washington residents were affected. 26 days elapsed between awareness and notification. 0 days to identify the breach. 0 days to contain the breach.
Affected (this filing): 725
WA AG ≤30d
🦬Montana State AGlinked via multistate filing link · 100%
W.W. Grainger, Inc. reported a data breach to the Montana Attorney General. The breach was reported on 2017-09-18. The breach occurred from 8/23/2017 to 8/25/2017. 57 Montana residents were affected.
Affected (this filing): 57
🐻California State AGlinked via same-victim cross-source · 100%
W.W. Grainger, Inc. reported the theft of an employee's laptop on August 23, 2017. The device contained personal information of current and former employees and their dependents, including names, contact information, Social Security numbers, dates of birth, and employee benefits information. Grainger disabled the employee's credentials and set the laptop to auto-wipe. No evidence of data access was found. The company offered one year of complimentary identity monitoring through Kroll.
🦫Oregon State AGlinked via multistate filing link · 100%
W.W. Grainger, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2017-09-20. The breach occurred during 8/23/2017 - 8/23/2017. The breach was discovered on 8/24/2017. 57,992 individuals were affected. Notice was sent on 9/18/2017.