State of Washington

Data Breach Notifications

Data breach notifications are collected by the Washington Attorney General's Office when over 500 Washington residents' personal information is compromised. Each record details the reporting entity, incident dates, types of compromised data, and the number of affected individuals.

Example records
Organization Namelegal entityBreach DatetemporalNotification DatetemporalPersonal Information TypeclassificationSectorindustryWa Residents Affectedquantity
Fred Hutchinson Cancer Center2023-11-012023-12-01Social Security NumberHealthcare800000
Comcast / Xfinity2023-10-102023-12-18Username / PasswordPrivate Business1200000
Example Financial Services LLC2022-08-152022-09-10Financial Account NumberFinance6200
Use cases

Vendor Due Diligence Screening

A procurement team evaluating a new software or healthcare vendor checks whether the organization has a prior breach history, what type of data was exposed, and how quickly they notified regulators, to assess whether the vendor meets internal data security standards before signing a contract.

Organization NameBreach DateNotification DatePersonal Information TypeSector

Cyber Insurance Underwriting

An underwriter pricing a cyber liability policy for a business in a specific sector reviews historical breach frequency, the types of personal data typically exposed in that sector, and the average scale of incidents to calibrate premium rates and coverage limits.

SectorPersonal Information TypeWa Residents AffectedBreach Date

Fraud Operations Triage

A fraud analyst at a financial institution notices a spike in synthetic identity or account takeover attempts and cross-references the affected organizations against recent breach records to determine whether compromised credentials or Social Security Numbers from a known incident are being used to open fraudulent accounts.

Organization NameBreach DatePersonal Information TypeWa Residents Affected