AFLAC INCORPORATED
bd_2c6b0987aa912328 · schema v1 · pii pii-v1
Full breach record for AFLAC INCORPORATED →18 incidents on fileAflac Incorporated reported a security incident to the Washington Attorney General on December 19, 2025, supplementing a June 2025 notice. The incident, discovered on June 12, 2025, involved unauthorized access via social engineering/phishing. Approximately 432,025 Washington residents were affected, with data including names, SSNs, DOBs, and PHI. Aflac contained the incident, engaged forensic experts, notified law enforcement, and offered 24 months of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jun 12, 2025
Begins
Jun 12, 2025
Discovered
Jun 20, 2025
Scope determined
Jul 11, 2025
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Oregon State AGbd_aca1f25de70724162025-07-11Verified
- South Carolina State AGbd_d73fac9930b96b8a2025-07-14 · +3dVerified
- Illinois State AGbd_976e5c43783ad1922025-07-01 · +10dVerified
- Delaware State AGbd_914dcca03fa76b502025-06-20 · +21dVerified
Show 1 more filing ↓Show fewer ↑up to 21d gap
- SEC 8-Kbd_b044b84c4e40b4a42025-06-20 · +21dVerified
Filing propagation · 6 filings · 5 states
View merged incident ↗Pattern: first filing Jun 20 (DE), last Jul 14 (SC) — a 24-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.