HackingCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
QORVO, INC.
bd_26b652dc3f943582 · schema v1 · pii pii-v1
Full breach record for QORVO, INC. →Qorvo Inc. notified Vermont AG of a cybersecurity incident in August 2023 where an unauthorized actor infiltrated IT systems and accessed personal information. Qorvo took systems offline, engaged external experts, and notified law enforcement. The company is offering 24 months of credit monitoring. The specific data types accessed were redacted in the public notice, but the notice implies PII and government IDs were involved.
Vermont clock✗ VT AG >45 bday20 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_2ae507f31b310b93Montana State AGfiled 2023-12-21Candidate
- bd_5a3716f5d5415f48Oregon State AGfiled 2023-12-21Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-12-21-qorvo-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 21, 2023
- Raw hash
- da8de794822682ad3f8a38745f7d785b0e5ed893fff92418ac7cb9946022293e
Reporting entity
- Name
- QORVO, INC.norm: qorvo
Victim entity
- Name
- QORVO, INC.norm: qorvo
Incident
- Discovered
- Aug 1, 2023
- Materiality determined
- Dec 21, 2023
- Notification sent
- Dec 21, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified law enforcement
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 20 weeks(142 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.