MalwareRansomwareData EncryptedCustomer Data InvolvedPIIIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
SN Servicing Corporation
bd_0424e3f59662bb0d · schema v1 · pii pii-v1
Full breach record for SN Servicing Corporation →SN Servicing Corporation experienced a ransomware attack on or about October 15, 2020. The incident resulted in the exposure of borrower personal information, including names, addresses, loan numbers, and billing/balance data. SN locked down systems, engaged forensic experts, and notified authorities. Remediation included upgrading AI-based security tools and blocking foreign traffic. Credit monitoring was offered to affected individuals.
Leak gap clock⏱ Leak >90d15 weeks discovery → filing
⚠ AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
This filing is one of 7 about the same incident.View merged incident
A leak claim by egregor about this victim predates this filing by 106 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_4bc6fb5649261ccfLeak Siteegregorfiled 2020-10-15(106d gap)Verified
Regulatory filings (5) · sorted by filing gap
- bd_62f5a428547a502dMaine State AGfiled 2021-01-15(14d gap)Verified by operator
- bd_376b6357c22f175fMaine State AGfiled 2021-07-16(168d gap)Verified
- bd_d479dd57d0545f1fOregon State AGfiled 2021-07-16(168d gap)Verified
- bd_d772c960f49e9ed8California State AGfiled 2021-07-16(168d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 178d gap
- bd_7b8b73c450e5945fSouth Carolina State AGfiled 2021-07-26(178d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-537602
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 29, 2021
- Raw hash
- fe42655b629e32574a88e592c367f3189c5f502afd31cc6f785195dcda7bb0f7
Reporting entity
- Name
- SN Servicing Corporationnorm: sn servicing
Victim entity
- Name
- SN Servicing Corporationnorm: sn servicing
Incident
- Discovered
- Oct 14, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 15 weeks(107 days from discovery to filing)
- Compliance flags
- Leak >90d
- Discovery-date grounding
- AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.