J.P. Morgan
bd_09225cde6e124c67 · schema v1 · pii pii-v1
Full breach record for J.P. Morgan →3 incidents on fileJ.P. Morgan notified South Carolina residents of a data breach where three authorized system users, employed by J.P. Morgan customers or agents, ran reports between August 2021 and February 2024 that included unauthorized plan participant information. Data exposed included names, addresses, SSNs, and bank account numbers. J.P. Morgan addressed the issue and applied a software update. Affected individuals were offered two years of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 26, 2021
Begins
Feb 26, 2024
Discovered
May 6, 2024
Filed
vs. sector median
+2 wks slower
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.