Confirmed breach. Intrusion Feb 1, 2023–Feb 4, 2023, discovered Apr 26, 2023 — the first regulatory filing landed 30 days later. 17,384 individuals reported across the linked filings.
Capital One reported a data breach to the Oregon Attorney General. The breach was reported on 2023-05-26. The breach occurred during 2/1/2023 - 2/4/2023. The breach was discovered on 4/26/2023. 16,779 individuals were affected. Notice was sent on 5/26/2023.
Affected (this filing): 16,779
OR AG ≤45d
🌲Washington State AGMost recentlinked via multistate filing link · 100%
Capital One, a finance sector entity reported a ransomware incident to the Washington Attorney General. The organization became aware of the incident on 2023-04-26 and filed notice on 2023-05-26. 605 Washington residents were affected. 30 days elapsed between awareness and notification. 84 days to identify the breach. 0 days to contain the breach.
Affected (this filing): 605
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.