Social EngineeringPhishingStolen CredentialsMulti-Stage ChainCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumActive
TOSHIBA GLOBAL COMMERCE SOLUTIONS, INC.
bd_16a93653017e63a6 · schema v1 · pii pii-v1
Full breach record for TOSHIBA GLOBAL COMMERCE SOLUTIONS, INC. →Toshiba Global Commerce Solutions, Inc. notified consumers of a data security incident involving unauthorized access to email accounts. The breach, occurring between Dec 4, 2023 and Mar 18, 2024, exposed names and Social Security numbers. Toshiba engaged Kroll to provide two years of identity monitoring and enhanced email security.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-07-23-toshiba-global-commerce-solutions-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 23, 2023
- Raw hash
- a59716be97a7487ac698d7f66c24bd59f98d9c0deeb92dc251a782a07fca3924
Reporting entity
- Name
- TOSHIBA GLOBAL COMMERCE SOLUTIONS, INC.norm: toshiba global commerce
- Domain
- toshibacommerce.com
Victim entity
- Name
- TOSHIBA GLOBAL COMMERCE SOLUTIONS, INC.norm: toshiba global commerce
- Domain
- toshibacommerce.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jul 23, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Initial access
- phishing_link
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.