HackingStolen CredentialsCustomer Data InvolvedTargetedPIIIDENTITY_BASICLowContained
Prime, Inc.
bd_2191975f1575360e · schema v1 · pii pii-v1
Full breach record for Prime, Inc. →Prime Inc. disclosed a cyber-attack on October 20, 2016, where an unauthorized external user breached its network and accessed driver identity data for active drivers in calendar year 2015. The breach affected 37 drivers who were residents of New Hampshire. Prime notified affected individuals via mail on October 21, 2016, and provided 12 months of comprehensive identity protection services through an external provider. The incident involved the unauthorized access of personally identifiable information.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed37 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/prime-20161031.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 31, 2016
- Raw hash
- 0063f95ec3b476aea248fe50d8e0ef869687207724fc9367c01f70735420a616
Reporting entity
- Name
- Prime, Inc.norm: prime
- Domain
- primeinc.com
Victim entity
- Name
- Prime, Inc.norm: prime
- Domain
- primeinc.com
Incident
- Discovered
- Oct 20, 2016
- Materiality determined
- —
- Notification sent
- Oct 21, 2016
- Affected individuals
- 37
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Filed notification with New Hampshire Office of the Attorney General
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 11 days(11 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.