Social EngineeringPhishingCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Icahn Automotive Group LLC
bd_04894bb5d0949b5b · schema v1 · pii pii-v1
Full breach record for Icahn Automotive Group LLC →Icahn Automotive Group LLC notified Delaware AG of a phishing incident where an unauthorized actor accessed an employee's email account between March 13 and April 4, 2020. The actor accessed employee PII including SSNs, driver's license numbers, and financial account data. No evidence of data misuse was found. The company engaged forensic investigators and provided 12 months of identity monitoring via Kroll.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_0df34c60c8ad2542Montana State AGfiled 2020-05-06Candidate
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2020/06/Icahn-Automotive-Ad-CM-r3prf.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 6, 2020
- Raw hash
- bfbece1ebbf5aeefa8f62c4c9bf3cf53285d23bfe0c09f32a843e51282fc7be0
Reporting entity
- Name
- Icahn Automotive Group LLCnorm: icahn automotive
Victim entity
- Name
- Icahn Automotive Group LLCnorm: icahn automotive
Incident
- Discovered
- Apr 6, 2020
- Materiality determined
- —
- Notification sent
- Jun 15, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- External
- Initial access
- phishing_link
Compliance
- Time to disclose
- 4 weeks(30 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.