Social EngineeringPhishingDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTMediumActive
Next NextGen Resources
bd_14937888c20db401 · schema v1 · pii pii-v1
Full breach record for Next NextGen Resources →NextGen Global Resources, a staffing firm, disclosed a phishing incident on November 12, 2017. An employee inadvertently responded to a phishing email, allowing an attacker to set up an email forwarding rule. The breach affected worker names and Social Security Numbers (partial and full) from July 2017 through discovery. NextGen notified affected individuals and provided one year of LifeLock credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-131689
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 28, 2017
- Raw hash
- 1e5cafa0f79fe267960a5f2e1c07a3051e9946d7ad086d3bd888e1bcc9270f59
Reporting entity
- Name
- NextGennorm: nextgen
- Domain
- nextgen.com
Victim entity
- Name
- Next NextGen Resourcesnorm: next nextgen resources
- Domain
- nextgenresources.com
Incident
- Discovered
- Nov 12, 2017
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- External
- Regulator citations
- notifying your state’s Attorney General
- Initial access
- phishing_link
Compliance
- Time to disclose
- 7 weeks(46 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.