[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fosyp4qw47vp9":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"publishedAt":13,"modifiedDate":14,"contentUpdatedAt":14,"source":15,"sourceUrl":16,"sourceUrls":17,"pwnCount":13,"affectedCount":13,"affectedCountStatus":20,"affectedCountLowerBound":13,"affectedCountUnit":20,"hasEnglishDescription":4,"contentLocale":21,"availableLocales":22,"translations":24,"severity":27,"dataClasses":28,"description":38,"seoTitle":8,"seoDescription":39,"logoUrl":40,"isVerified":4,"isSensitive":4,"isSpamList":41,"isMalware":41,"company":42},"6a4f7012f0cf515afcce5f47","Kubota North America 2026","Kubota North America 2026 Data Breach","kubota-north-america-2026","kubotausa.com","2026-03-16T00:00:00.000Z","2026-07-09T09:55:28.839Z",null,"2026-07-29T23:08:57.290Z","Official breach notice and state regulatory notifications","https:\u002F\u002Fwww.kubotausa.com\u002Fnotice-of-security-incident",[16,18,19],"https:\u002F\u002Foag.my.site.com\u002Fdatasecuritybreachreport\u002Fapex\u002FDataSecurityReportsPage","https:\u002F\u002Fwww.mass.gov\u002Fdoc\u002F2026-1065-kubota-north-america-corporation\u002Fdownload","unknown","en",[21,23],"tr",{"en":25,"tr":26},{"slug":9},{"slug":9},"Unknown",[29,30,31,32,33,34,35,36,37],"Names","Dates of birth","Social Security numbers","Taxpayer identification numbers","Driver’s license or government-issued identification numbers","Financial account information","Payment card information","Benefits enrollment information","Limited claims information","\u003Cp>\u003Cstrong>The Kubota North America 2026 data breach\u003C\u002Fstrong> concerns unauthorized access to certain network systems between March 16 and April 20, 2026 and the later finding that human-resources files had been accessed. The official company notice does not disclose a nationwide total. The live Texas Attorney General record lists only 2,237 Texas residents, so that state subset is not presented as the national count.\u003C\u002Fp>\n\n\u003Ch2>What does the incident timeline establish?\u003C\u002Fh2>\n\u003Cp>The company gives March 16–April 20 as the unauthorized-access period and says it secured the network and began an investigation when it learned of the incident. On April 30 it discovered that files maintained by its human-resources team had been accessed. The file review concluded on June 16 that one or more files may have contained personal information relating to certain employees and their dependents. Notification letters were mailed June 30.\u003C\u002Fp>\n\n\u003Cp>The sources do not disclose the initial-access method, threat actor, date the company first learned of the incident, or confirmed removal of particular files from the network. The entry therefore verifies unauthorized access and accessed files without adding an unsupported ransomware, vulnerability, or published-data claim.\u003C\u002Fp>\n\n\u003Ch2>Which information may have been involved?\u003C\u002Fh2>\n\u003Cp>Employee files may have contained a name with a Social Security number, date of birth, taxpayer identification number, driver's-license or other government-issued identification number, financial account information for direct deposit, payment-card information for corporate cards, and benefits enrollment or limited claims information for people enrolled in Kubota's plan. For dependents, the scope is limited to names, Social Security numbers, dates of birth, and, where applicable, benefits enrollment or limited claims information.\u003C\u002Fp>\n\n\u003Cp>The company explicitly says the fields varied by the employee's role and benefits elections. It does not follow that every recipient had every field involved. The official notice does not list passwords, login credentials, personal email accounts, or bank-access codes.\u003C\u002Fp>\n\n\u003Ch2>How should the count and local scope be interpreted?\u003C\u002Fh2>\n\u003Cp>The company notice contains no nationwide person count. The public Texas regulator row records 2,237 Texas residents, mailed notice, and identity-theft protection in a filing dated July 1, 2026. The official Massachusetts sample letter corroborates the dates and fields but does not supply a national total. The previous 5,891 value was removed because it could not be supported by a direct primary source. There is also no local import job or searchable person-level corpus associated with this entry.\u003C\u002Fp>\n\n\u003Ch2>What can notice recipients review?\u003C\u002Fh2>\n\u003Cp>Kubota offered identity monitoring through Kroll. A recipient should first use the fields identified in their own letter. People whose identity numbers were involved can review credit reports, new accounts, and address changes; those with direct-deposit information can monitor bank and payroll activity; those with corporate-card data can inspect card transactions; and those with benefits or limited claims information can review plan and explanation records. Before accepting a link, payment request, or one-time-code request in an unexpected call or message, recipients should use an independent channel opened from kubotausa.com.\u003C\u002Fp>","The Kubota North America 2026 incident accessed HR files that may contain employee and dependent identity, direct-deposit, card, and benefits data.","\u002Fuploads\u002Flogo\u002Fkubota-north-america-2026.png",false,{"name":43,"sector":44,"country":45,"website":10,"websiteArchiveUrl":46,"websiteStatus":47,"websiteCheckedAt":48},"Kubota North America Corporation","Manufacturing","United States","","active","2026-07-29T23:01:36.000Z"]