Capital One
bd_2f008066748b279e · schema v1 · pii pii-v1
Full breach record for Capital One →Capital One, National Association reported a cybersecurity incident to the Maine Attorney General. The breach occurred on November 10, 2020, and was discovered on March 23, 2021. A total of 426 individuals were affected, including 2 Maine residents. The incident involved the potential acquisition of names and financial account numbers (in combination with security codes or PINs). Capital One stated there is no evidence that data was actually breached but issued notifications as an abundance of caution. Affected individuals were offered 24 months of credit monitoring via TransUnion.
Source provenance
- Source URL
- https://www.maine.gov/agviewer/content/ag/985235c7-cb95-4be2-8792-a1252b4f8318/010ada15-e66e-49ab-8e9d-e834008c7748.shtml
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 31, 2021
- Raw hash
- 42634bf4ef380eac1c7120f5e7684ec98b4e1209aed180a63d7e9ecf9171bd94
Reporting entity
- Name
- Capital Onenorm: capital one
- Domain
- capitalone.com
- Industry
- Financial Services
Victim entity
- Name
- Capital Onenorm: capital one
- Domain
- capitalone.com
- Industry
- Financial Services
Incident
- Discovered
- Mar 23, 2021
- Materiality determined
- —
- Notification sent
- Mar 30, 2021
- Affected individuals
- 426
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unknown
- Regulator citations
- Filed data breach notice with Maine Attorney General
Compliance
- Time to disclose
- 8 days(8 days from discovery to filing)
- Compliance flags
- ME AG ≤30d · 8d
- Discovery-date grounding
- AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
- Clock breakdown
Statute Window Elapsed Threshold Status Maine Discovered: Mar 23, 2021→ Filed with AG: Mar 31, 20218d 30 days ME AG ≤30d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.