Company Details
sapp-bros.-inc.
303
1,742
484
sappbros.net
0
SAP_9631225
In-progress


Sapp Bros., Inc. Company CyberSecurity Posture
sappbros.netSapp Bros., Inc. is a collection of 18 full-service, friendly travel centers; primarily located on Interstate-80 from as far west as Toquerville, Utah to Clearfield, Pennsylvania in the east. Sapp Bros. is also a leading petroleum wholesale distributor with a robust offering related to refined fuels, lubricants, oil, propane, diesel exhaust fluid, compressed natural gas, kerosene, additives, solvents, and many other associated products, services, and equipment. Sapp Bros. partners with nearly all petroleum manufacturers to ensure their travel centers and 30+ wholesale outlets have the most in-demand products and services. A history of steady and sustained growth has allowed Sapp Bros. Petroleum & Sapp Bros. Travel Centers to operate for over 45 years and have made it their primary focus to treat people kindly and fairly. Relationship-based customer service has given Sapp Bros. the opportunity to establish countless long-term friendships with their customers and business partners. Sapp Bros. transports fuel and lubricants through its own modern and diverse truck fleet. The logistically minded SBT, Inc. aids the operations of Sapp Bros. Travel Centers, Sapp Bros. Petroleum, and its customers, which helps keep costs low. Sapp Bros. is excited about the prospects the future has to offer and looks forward to continuing to serve its valued customers and grow new relationships.
Company Details
sapp-bros.-inc.
303
1,742
484
sappbros.net
0
SAP_9631225
In-progress
Between 600 and 649

SBI Global Score (TPRM)XXXX

Description: Sapp Bros. Suffers Major Data Breach Impacting Over 16,000 Individuals Sapp Bros., Inc., a prominent travel center operator and petroleum distributor based in Omaha, Nebraska, confirmed a significant data breach after an unauthorized actor accessed its network on August 25, 2025. The hacking group Worldleaks claimed responsibility, leaking the stolen data on the dark web via the Tor network on September 23, 2025. The breach exposed sensitive personally identifiable information (PII), including full names, addresses, Social Security numbers, demographic details, and in some cases, driver’s license numbers. A forensic review completed on November 10, 2025, confirmed the compromise of this data, affecting 16,292 individuals nationwide, with 1,741 Iowa residents impacted, as disclosed to the Iowa Attorney General on December 11, 2025. The attack appears to have been targeted and sophisticated, exploiting network vulnerabilities before detection. Given the nature of the exposed data particularly Social Security and driver’s license numbers the breach poses a high risk of identity theft and fraud. In response, Sapp Bros. secured its systems and offered free credit monitoring and identity protection services through IDX for 12 months to affected individuals, with enrollment available until March 10, 2026. The full scope of the breach, including potential customer impact, remains under review.


No incidents recorded for Sapp Bros., Inc. in 2026.
No incidents recorded for Sapp Bros., Inc. in 2026.
No incidents recorded for Sapp Bros., Inc. in 2026.
SBI cyber incidents detection timeline including parent company and subsidiaries

Sapp Bros., Inc. is a collection of 18 full-service, friendly travel centers; primarily located on Interstate-80 from as far west as Toquerville, Utah to Clearfield, Pennsylvania in the east. Sapp Bros. is also a leading petroleum wholesale distributor with a robust offering related to refined fuels, lubricants, oil, propane, diesel exhaust fluid, compressed natural gas, kerosene, additives, solvents, and many other associated products, services, and equipment. Sapp Bros. partners with nearly all petroleum manufacturers to ensure their travel centers and 30+ wholesale outlets have the most in-demand products and services. A history of steady and sustained growth has allowed Sapp Bros. Petroleum & Sapp Bros. Travel Centers to operate for over 45 years and have made it their primary focus to treat people kindly and fairly. Relationship-based customer service has given Sapp Bros. the opportunity to establish countless long-term friendships with their customers and business partners. Sapp Bros. transports fuel and lubricants through its own modern and diverse truck fleet. The logistically minded SBT, Inc. aids the operations of Sapp Bros. Travel Centers, Sapp Bros. Petroleum, and its customers, which helps keep costs low. Sapp Bros. is excited about the prospects the future has to offer and looks forward to continuing to serve its valued customers and grow new relationships.

Transnet Freight Rail is the largest division of Transnet SOC Ltd. It is a world class heavy haul freight rail company that specialises in the transportation of freight. The company maintains an extensive rail network across South Africa that connects with other rail networks in the sub-Saharan reg

XPO provides world-class transportation solutions to the most successful companies in the world. We have a high-energy team around the globe focused on being the best in the industry. Given the scope of our business, there are opportunities to do satisfying work in many different fields, and at all

Operating in more than 200 countries and territories, we’re committed to moving our world forward by delivering what matters. Beginning as a small messenger service, UPS was started by two enterprising teenagers and a $100 loan. Now, we’re almost 500,000 UPSers strong, with operations around the glo

Put us on the job and consider it done. Schneider is a premier provider of transportation and logistics services headquartered in Green Bay, Wisconsin, and with offices in Chicago, Dallas and many cities in between. Offering one of the broadest portfolios in the industry, Schneider’s solutions inclu

The logistics industry is a $500 billion market. With annual sales over $8 billion, Total Quality Logistics (TQL) is one of the largest freight brokerage firms in the nation. TQL connects customers with truckload freight that needs to be moved with quality carriers who have the capacity to move it.

J.B. Hunt specializes in freight shipping for customers of all sizes. Our mission is to drive long-term value for our people, customers and shareholders while staying focused on our vision to create the most efficient transportation network in North America. Our foundations – People you trust. Techn
Yellow, a Fortune 500 company headquartered in Nashville, TN is one of the largest super-regional less-than-truckload (LTL) companies in North America. Nearly 100 years ago, Yellow created the LTL industry, and now it comprises four successful regional LTL companies and an in-house logistics brokera

We’re an innovative NSW government organisation comprised of a network of agencies and divisions that keep the state moving. Our focus is on delivering safe, reliable and integrated transport networks for everyone. With over 28,000 team members, we’re committed to inclusion, diversity, and opportun
.png)
If you were affected by the Sapp Bros. data breach, you may be entitled to compensation.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Sapp Bros., Inc. is http://www.sappbros.net/.
According to Rankiteo, Sapp Bros., Inc.’s AI-generated cybersecurity score is 603, reflecting their Poor security posture.
According to Rankiteo, Sapp Bros., Inc. currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Sapp Bros., Inc. has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, Sapp Bros., Inc. is not certified under SOC 2 Type 1.
According to Rankiteo, Sapp Bros., Inc. does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Sapp Bros., Inc. is not listed as GDPR compliant.
According to Rankiteo, Sapp Bros., Inc. does not currently maintain PCI DSS compliance.
According to Rankiteo, Sapp Bros., Inc. is not compliant with HIPAA regulations.
According to Rankiteo,Sapp Bros., Inc. is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Sapp Bros., Inc. operates primarily in the Truck Transportation industry.
Sapp Bros., Inc. employs approximately 303 people worldwide.
Sapp Bros., Inc. presently has no subsidiaries across any sectors.
Sapp Bros., Inc.’s official LinkedIn profile has approximately 1,742 followers.
Sapp Bros., Inc. is classified under the NAICS code 484, which corresponds to Truck Transportation.
No, Sapp Bros., Inc. does not have a profile on Crunchbase.
Yes, Sapp Bros., Inc. maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/sapp-bros.-inc..
As of January 23, 2026, Rankiteo reports that Sapp Bros., Inc. has experienced 1 cybersecurity incidents.
Sapp Bros., Inc. has an estimated 5,579 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Breach.
Detection and Response: The company detects and responds to cybersecurity incidents through an third party assistance with idx (credit monitoring and identity protection services), and remediation measures with secured systems, arranged free credit monitoring and identity protection services for affected individuals, and communication strategy with notification to affected individuals and disclosure to the iowa attorney general..
Title: Sapp Bros., Inc. Data Breach by Worldleaks
Description: Sapp Bros., Inc., a well-known operator of travel centers and a major petroleum distributor, experienced a significant data breach impacting employees and possibly customers. An unauthorized actor gained access to information stored on the Sapp Bros. network, with personally identifiable information (PII) exposed, including full names, addresses, Social Security numbers, and driver’s license numbers.
Date Detected: 2025-08-25
Date Publicly Disclosed: 2025-09-23
Type: Data Breach
Attack Vector: Hacking
Threat Actor: Worldleaks
Common Attack Types: The most common types of attacks the company has faced is Breach.

Data Compromised: Personally identifiable information (PII), including full names, addresses, Social Security numbers, and driver’s license numbers
Systems Affected: Sapp Bros. network
Brand Reputation Impact: Potential brand reputation damage due to exposure of sensitive employee and customer data
Identity Theft Risk: High risk of identity theft due to exposure of Social Security numbers and driver’s license numbers
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Personally identifiable information (PII).

Entity Name: Sapp Bros., Inc.
Entity Type: Company
Industry: Travel Centers, Petroleum Distribution
Location: Omaha, Nebraska, USA
Customers Affected: 16,292 individuals nationwide, including 1,741 Iowa residents

Third Party Assistance: IDX (credit monitoring and identity protection services)
Remediation Measures: Secured systems, arranged free credit monitoring and identity protection services for affected individuals
Communication Strategy: Notification to affected individuals and disclosure to the Iowa Attorney General
Third-Party Assistance: The company involves third-party assistance in incident response through IDX (credit monitoring and identity protection services).

Type of Data Compromised: Personally identifiable information (PII)
Number of Records Exposed: 16,292
Sensitivity of Data: High (Social Security numbers, driver’s license numbers)
Data Exfiltration: Yes (leaked on the dark web by Worldleaks)
Personally Identifiable Information: Full namesAddressesSocial Security numbersDriver’s license numbersDemographic information
Prevention of Data Exfiltration: The company takes the following measures to prevent data exfiltration: Secured systems, arranged free credit monitoring and identity protection services for affected individuals.

Data Exfiltration: Yes

Regulatory Notifications: Disclosure to the Iowa Attorney General on Dec. 11, 2025

Source: Tor network posting by Worldleaks
Date Accessed: 2025-09-23

Source: Disclosure to the Iowa Attorney General
Date Accessed: 2025-12-11
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Tor network posting by WorldleaksDate Accessed: 2025-09-23, and Source: Disclosure to the Iowa Attorney GeneralDate Accessed: 2025-12-11.

Investigation Status: Ongoing (full extent of affected parties still being clarified)
Communication of Investigation Status: The company communicates the status of incident investigations to stakeholders through Notification to affected individuals and disclosure to the Iowa Attorney General.

Customer Advisories: Affected individuals notified and advised to enroll in free credit monitoring and identity protection services until March 10, 2026
Advisories Provided: The company provides the following advisories to stakeholders and customers following an incident: were Affected individuals notified and advised to enroll in free credit monitoring and identity protection services until March 10 and 2026.

Root Causes: Vulnerabilities in the Sapp Bros. network exploited by the threat actor
Post-Incident Analysis Process: The company's process for conducting post-incident analysis is described as IDX (credit monitoring and identity protection services).
Last Attacking Group: The attacking group in the last incident was an Worldleaks.
Most Recent Incident Detected: The most recent incident detected was on 2025-08-25.
Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2025-09-23.
Most Significant Data Compromised: The most significant data compromised in an incident were Personally identifiable information (PII), including full names, addresses, Social Security numbers and and driver’s license numbers.
Third-Party Assistance in Most Recent Incident: The third-party assistance involved in the most recent incident was IDX (credit monitoring and identity protection services).
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were Personally identifiable information (PII), including full names, addresses, Social Security numbers and and driver’s license numbers.
Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 16.3K.
Most Recent Source: The most recent source of information about an incident are Disclosure to the Iowa Attorney General and Tor network posting by Worldleaks.
Current Status of Most Recent Investigation: The current status of the most recent investigation is Ongoing (full extent of affected parties still being clarified).
Most Recent Customer Advisory: The most recent customer advisory issued were an Affected individuals notified and advised to enroll in free credit monitoring and identity protection services until March 10 and 2026.
.png)
Improper validation of specified type of input in M365 Copilot allows an unauthorized attacker to disclose information over a network.
Improper access control in Azure Front Door (AFD) allows an unauthorized attacker to elevate privileges over a network.
Azure Entra ID Elevation of Privilege Vulnerability
Moonraker is a Python web server providing API access to Klipper 3D printing firmware. In versions 0.9.3 and below, instances configured with the "ldap" component enabled are vulnerable to LDAP search filter injection techniques via the login endpoint. The 401 error response message can be used to determine whether or not a search was successful, allowing for brute force methods to discover LDAP entries on the server such as user IDs and user attributes. This issue has been fixed in version 0.10.0.
Runtipi is a Docker-based, personal homeserver orchestrator that facilitates multiple services on a single server. Versions 3.7.0 and above allow an authenticated user to execute arbitrary system commands on the host server by injecting shell metacharacters into backup filenames. The BackupManager fails to sanitize the filenames of uploaded backups. The system persists user-uploaded files directly to the host filesystem using the raw originalname provided in the request. This allows an attacker to stage a file containing shell metacharacters (e.g., $(id).tar.gz) at a predictable path, which is later referenced during the restore process. The successful storage of the file is what allows the subsequent restore command to reference and execute it. This issue has been fixed in version 4.7.0.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.