MORGAN STANLEY
bd_2bbc0c7d3717c282 · schema v1 · pii pii-v1
Full breach record for MORGAN STANLEY →15 incidents on fileMorgan Stanley notified the Washington AG of a data breach involving vendor Guidehouse. An unauthorized individual exploited the Accellion FTA vulnerability to access encrypted files containing PII (names, addresses, DOB, SSNs) of StockPlan Connect participants. Morgan Stanley was notified on May 20, 2021. 2,080 Washington residents were affected. Credit monitoring was offered.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 1, 2021
Begins
May 20, 2021
Discovered
Jul 2, 2021
Filed
vs. sector median
2 wks faster
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- California State AGbd_1858bfd9dbcb4a682021-07-02Verified
- Montana State AGbd_1dcf72e45ca387ea2021-07-02Candidate
- Massachusetts State AGbd_1e9c1f725dd8e44c2021-07-02Verified
- Indiana State AGbd_5b8fbd2622d600252021-07-02Verified
Show 3 more filings ↓Show fewer ↑up to 5d gap
- Oregon State AGbd_81be7ab9e152b1182021-07-02Verified by operator
- New Hampshire State AGbd_e0351b8a887f70af2021-07-02Verified
- New Hampshire State AGbd_992601bdd37ca5aa2021-07-07 · +5dVerified
Filing propagation · 8 filings · 7 states
View merged incident ↗Pattern: first filing Jul 2 (CA), last Jul 7 (NH) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.