HackingStolen CredentialsData ExfiltratedSupply Chain (3P Vendor)IDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Global Atlantic
bd_1494f54bf2a0d7e2 · schema v1 · pii pii-v1
Full breach record for Global Atlantic →Global Atlantic Financial Group, LLC notified Hawaii regulators of a cybersecurity incident involving the MOVEit file transfer application. The breach exposed personal information, including names and Social Security numbers, of affected individuals. Global Atlantic engaged forensic experts, reported the incident, and offered two years of Experian IdentityWorks membership to victims. The company stated its own corporate environment was not compromised.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://cca.hawaii.gov/wp-content/uploads/2026/05/Letter.2023-1027.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 24, 2023
- Raw hash
- 9d73036c94a09840a70774b7b069f4d575d407f0c37f934a3afddaebda835e91
Reporting entity
- Name
- Global Atlanticnorm: global atlantic
- Domain
- globalatlantic.com
Victim entity
- Name
- Global Atlanticnorm: global atlantic
- Domain
- globalatlantic.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- Partner
- Regulator citations
- Reported the incident to the appropriate authorities
- Initial access
- supply_chain
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.