FEDERALItem 8.01 · voluntaryHackingStolen CredentialsTargetedCREDENTIALSLowActive
Fidelity National Financial
bd_2cf2ab86439b3485 · schema v1 · pii pii-v1
Full breach record for Fidelity National Financial →Fidelity National Financial, Inc. (FNF) disclosed a cybersecurity incident impacting certain systems. An unauthorized third party accessed systems and acquired credentials. FNF retained experts, notified law enforcement, and blocked access to systems, causing business disruptions in title insurance and mortgage services. Investigation is ongoing.
SEC clockMateriality determined Nov 19, 2023 → Filed Nov 21, 20232d ✓ SEC 4-day OK2 days discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Ransomware claims (1)
- bd_7699611bf4429015Leak Sitealphvfiled 2023-11-22(2d gap)Candidate
Regulatory filings (2) · sorted by filing gap
- bd_8b40a33e0752e51fSEC 8-Kfiled 2023-11-30(9d gap)Verified
- bd_3c1edbfa41dbdd02SEC 8-Kfiled 2024-01-09(49d gap)Verified by operator
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/1331875/000133187523000064/
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Nov 21, 2023
- Raw hash
- dec84e366d5c8626d2a6fca7327a10cb11b5a79bbd2a832623e513052cefad23
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- Fidelity National Financialnorm: fidelity national financial
- SEC CIK
- 0001331875
- Domain
- fnf.com
Victim entity
- Name
- Fidelity National Financialnorm: fidelity national financial
- SEC CIK
- 0001331875
- Domain
- fnf.com
Incident
- Discovered
- Nov 19, 2023
- Materiality determined
- Nov 19, 2023
- Notification sent
- Nov 21, 2023
- Affected individuals
- Not disclosed
- Data types
- CREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- notified law enforcement authorities
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 2 days(2 days from discovery to filing)
- Compliance flags
- SEC 4-day OK · 2d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status SEC Materiality determined: Nov 19, 2023→ Filed: Nov 21, 20232d cal. 4 business days SEC 4-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.