The Maine Office of the Attorney General reported that C&S Wholesale Grocers, LLC experienced a data breach involving inadvertent disclosure on January 18, 2025, affecting a total of 60 individuals, including 1 resident of Maine. The breach occurred due to an accidental mailing of W2 forms containing personal information to the wrong individuals, with identity theft protection services offered through IDX.
TPRM report: https://scoringcyber.rankiteo.com/company/c&s-wholesale-grocers
"id": "c&s358072525",
"linkid": "c&s-wholesale-grocers",
"type": "Breach",
"date": "1/2025",
"severity": "25",
"impact": "1",
"explanation": "Attack without any consequences"
{'affected_entities': [{'customers_affected': 60,
'industry': 'Wholesale Grocery',
'name': 'C&S Wholesale Grocers, LLC',
'type': 'Company'}],
'attack_vector': 'Inadvertent Disclosure',
'data_breach': {'file_types_exposed': ['W2 forms'],
'number_of_records_exposed': 60,
'personally_identifiable_information': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': 'Personal Information'},
'date_detected': '2025-01-18',
'description': 'The Maine Office of the Attorney General reported that C&S '
'Wholesale Grocers, LLC experienced a data breach involving '
'inadvertent disclosure on January 18, 2025, affecting a total '
'of 60 individuals, including 1 resident of Maine. The breach '
'occurred due to an accidental mailing of W2 forms containing '
'personal information to the wrong individuals, with identity '
'theft protection services offered through IDX.',
'impact': {'data_compromised': ['W2 forms containing personal information'],
'identity_theft_risk': 'High'},
'post_incident_analysis': {'root_causes': 'Human Error'},
'references': [{'source': 'Maine Office of the Attorney General'}],
'regulatory_compliance': {'regulatory_notifications': ['Maine Office of the '
'Attorney General']},
'response': {'third_party_assistance': ['IDX for identity theft protection '
'services']},
'title': 'C&S Wholesale Grocers Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'Human Error'}