HackingStolen CredentialsData ExfiltratedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTCREDENTIALSCriticalContained
TIO Networks USA, Inc.
bd_2aca2c6461b4bef6 · schema v1 · pii pii-v1
Full breach record for TIO Networks USA, Inc. →TIO Networks USA, Inc. disclosed a data breach involving unauthorized access to its network, affecting approximately 1.6 million customers. The incident, discovered in November 2017, involved the exposure of names, contact info, SSNs, payment card info, bank account numbers, and credentials. TIO suspended operations and engaged forensic experts.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_540cd56daf55a491Washington State AGfiled 2017-12-22Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-131573
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 22, 2017
- Raw hash
- 06f637b88bc6cf19636c8d754da5350cbcf85246f04dacaa688f6d143c619b45
Reporting entity
- Name
- TIO Networks USA, Inc.norm: tio networks usa
Victim entity
- Name
- TIO Networks USA, Inc.norm: tio networks usa
Incident
- Discovered
- Nov 10, 2017
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 1,600,000
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Contacted the appropriate law enforcement and other authorities
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 6 weeks(42 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.