HackingStolen CredentialsData ExfiltratedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
C.R. England, Inc.
bd_0b021db4d962eee0 · schema v1 · pii pii-v1
Full breach record for C.R. England, Inc. →C.R. England, Inc. notified South Carolina residents of a data security incident discovered on October 30, 2021. Unauthorized access to systems resulted in exposure of personal information including names and Social Security numbers. The company engaged forensic experts, reported to the FBI, and offered identity theft protection services.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_0c29cfe27054482dNew Hampshire State AGfiled 2022-05-23Verified
- bd_30ba01fbc98d1deeWashington State AGfiled 2022-05-23Verified
- bd_652bb67f011e6e84California State AGfiled 2022-05-24(1d gap)Verified
- bd_c4eb843c9624c38cOregon State AGfiled 2022-05-24(1d gap)Verified by operator
Show 2 more filings ↓Show fewer ↑up to 6d gap
- bd_72f8043264697824Maine State AGfiled 2022-05-20(3d gap)Verified by operator
- bd_258b96d3279202d1Montana State AGfiled 2022-05-17(6d gap)Candidate
Source provenance
- Source URL
- https://consumer.sc.gov/sites/consumer/files/Documents/Business%20Resources%20Laws/Related%20Laws/Breaches/2022/C.R.EnglandInc..pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 23, 2022
- Raw hash
- 64177afd62e53e8a483de406c73c085ea76de6dcc111c859691494555c9abdc7
Reporting entity
- Name
- C.R. England, Inc.norm: cr england
Victim entity
- Name
- C.R. England, Inc.norm: cr england
Incident
- Discovered
- Oct 30, 2021
- Materiality determined
- —
- Notification sent
- May 23, 2022
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Reported the incident to the Federal Bureau of Investigation
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 29 weeks(205 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.