GoDaddy.com, LLC notified residents of 10 US states (including DE, CA, NY) of a security incident affecting its Managed WordPress hosting service. On or about September 6, 2021, an unauthorized third party gained access to customer authentication information, including customer numbers, email addresses, WordPress Admin logins, and database passwords. GoDaddy blocked the actor, rotated credentials, and engaged forensic investigators and law enforcement. The incident status is active.