Horizon Actuarial
bd_3343e2ff6ac46177 · schema v1 · pii pii-v1
Full breach record for Horizon Actuarial →Horizon Actuarial Services, LLC experienced unauthorized access to two computer servers on November 10-11, 2021. The company discovered the incident on November 12, 2021, after receiving an email from a group claiming to have stolen personal data. The group demanded payment, which Horizon paid in exchange for an agreement to delete the data. The breach affected employees, former employees, family members, and applicants, exposing identity and employment information. Horizon engaged third-party specialists, notified the FBI, and offered 12 months of identity monitoring via Kroll.
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_0b8a8d1e0b2eb75aCalifornia State AGfiled 2022-05-24(6d gap)Candidate
- bd_a9ca9bbf0b626c3fHawaii State AGfiled 2022-05-24(6d gap)Verified
- bd_15610822e41f867eCalifornia State AGfiled 2022-05-10(8d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-553532
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 18, 2022
- Raw hash
- 3708000f18809f6bfdf14da94a765dee510b08ece9ea8dd33a8da0c08d42d401
Reporting entity
- Name
- Horizon Actuarialnorm: horizon actuarial
- Domain
- horizonactuarial.com
Victim entity
- Name
- Horizon Actuarialnorm: horizon actuarial
- Domain
- horizonactuarial.com
Incident
- Discovered
- Nov 12, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1041 Exfiltration Over C2 ChannelT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Provided notice to the FBI
Compliance
- Time to disclose
- 27 weeks(187 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.