Anderson & Murison, Inc.
bd_142524a26006be84 · schema v1 · pii pii-v1
Full breach record for Anderson & Murison, Inc. →Anderson & Murison, Inc., a wholesale insurance broker, disclosed a data security incident involving its web-based personal umbrella rating system. Between June 1, 2014, and July 18, 2014, umbrella applications were inadvertently accessible on the internet, exposing personal information including names, addresses, dates of birth, and driver's license numbers. The company discovered the misconfiguration on July 18, 2014, secured the server, and notified the California Attorney General. Kroll was engaged to provide one year of complimentary identity theft protection to affected individuals.
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_1641c92cd8c1fd97New Hampshire State AGfiled 2014-08-07Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-46150
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 7, 2014
- Raw hash
- 4cb43b1cc564da7a0e5e53296066ca4fd8a2a8c57fa636ca38e0ea4ab3276d3a
Reporting entity
- Name
- Anderson & Murison, Inc.norm: anderson murison
- Industry
- financial_services
Victim entity
- Name
- Anderson & Murison, Inc.norm: anderson murison
- Industry
- financial_services
Incident
- Discovered
- Jul 18, 2014
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Regulator citations
- Reported the breach to the California Attorney General’s Office
Compliance
- Time to disclose
- 20 days(20 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.