CNA FINANCIAL CORPORATION
bd_107e3f0f52c95ee9 · schema v1 · pii pii-v1
Full breach record for CNA FINANCIAL CORPORATION →CNA Financial Corporation notified Montana residents of a ransomware attack discovered on March 21, 2021. The threat actor accessed systems between March 5-21, 2021, copying limited personal information (name, SSN) before deploying ransomware. CNA recovered the data, found no evidence of misuse, and reported the incident to the FBI. Affected individuals were offered 24 months of Experian IdentityWorks.
J jump to incidentP pin to compareR raw source
Incident timeline
Mar 5, 2021
Begins
Mar 21, 2021
Discovered
Jul 9, 2021
Filed
vs. sector median
+7 wks slower
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- Oregon State AGbd_8f8adf6678098d272021-07-09Verified
- Indiana State AGbd_eb7c4eb9cabf7a572021-07-09Verified
- California State AGbd_2498cf3d61584cfe2021-07-08 · +1dCandidate
- Massachusetts State AGbd_53180e7c81f57e152021-07-08 · +1dVerified
Show 4 more filings ↓Show fewer ↑up to 3d gap
- HHS OCRbd_641fa664e7fa983f2021-07-08 · +1dVerified
- Maine State AGbd_7abcb947b9a916802021-07-08 · +1dVerified
- Washington State AGbd_7f8a3a5d1d0c1ff62021-07-08 · +1dVerified
- New Hampshire State AGbd_bdd258432c11e6292021-07-12 · +3dVerified
Filing propagation · 9 filings · 9 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.