FIRST AMERICAN FINANCIAL CORPORATION
bd_2357f90f46aa5f5e · schema v1 · pii pii-v1
Full breach record for FIRST AMERICAN FINANCIAL CORPORATION →2 incidents on fileFirst American Financial Corporation filed an 8-K/A amending its December 22, 2023 disclosure of a cybersecurity incident. The company detected unauthorized activity on its IT systems, elected on December 20, 2023 to isolate systems from the Internet, retained experts, worked with law enforcement, and notified regulators. The company believes the perpetrator accessed certain systems, exfiltrated data, and encrypted data on certain non-production systems. The incident is believed contained; investigation is ongoing.
J jump to incidentP pin to compareR raw source
Incident timeline — partial
? — ?
Breach window unknown
Dec 29, 2023
Filed
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- SEC 8-Kbd_4bb25e0c3e83651c2023-12-22 · +7dCandidate
- SEC 8-Kbd_bce25de7fe937e5d2024-01-12 · +14dVerified
Filing propagation · 3 filings
View merged incident ↗Pattern: first filing Dec 22, last Jan 12 — a 21-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.