DisclosureLens
HackingFinancial ServicesFinanceStolen CredentialsCustomer Data InvolvedIdentity (basic)Government IDFinancial accountMediumResolved

Quicken Loans, LLC

bd_1b2d9f45e33ce17a · schema v1 · pii pii-v1

Severity

Medium

Discovered

Jun 29, 2020

Filed

Sep 17, 2020

To disclose

11 weeks

Affected

1state residents only

Linked

4 filings

Confidence

66%
Full breach record for Quicken Loans, LLC4 incidents on file

Quicken Loans, Inc. notified the NH Attorney General of a data security incident where an unauthorized person accessed employee email inboxes on June 29, 2020. The intruder may have viewed personal information including name, address, bank account number, and Social Security number. One New Hampshire resident was affected. The incident was discovered and remediated on the same day. Quicken Loans offered 24 months of identity protection services.

Incident timeline

discovery → filing · 11 weeks / 80 days

Jun 29, 2020

Begins

Jun 29, 2020

Discovered

Sep 17, 2020

Filed

vs. sector median

+3 wks slower

This filing is one of 4 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (3) · sorted by filing gap

Filing propagation · 4 filings · 3 states

View merged incident ↗
Massachusetts State AGSep 15 · first
New Hampshire State AG+2d · this page

Pattern: first filing Sep 15 (MA), last Nov 3 (MA) — a 49-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.