HackingStolen CredentialsCapture Stored DataData ExfiltratedTargetedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
World Courier Group, Inc.
bd_387edde6a278ca6c · schema v1 · pii pii-v1
Full breach record for World Courier Group, Inc. →World Courier Group, Inc. notified consumers of a data security incident where personal information, including names, addresses, dates of birth, and Social Security Numbers, was exfiltrated from its information systems. The incident was discovered earlier in 2024, with confirmation of PII compromise on November 12, 2024. World Courier engaged law enforcement and cybersecurity experts, contained the incident, and is offering 24 months of credit monitoring via Experian IdentityWorks to affected individuals.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_86ed71e67b1e27e2Montana State AGfiled 2024-12-12Candidate
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-12-12-world-courier-group-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 12, 2024
- Raw hash
- 5bd66e08598c6de1edb4e362dbde2c115cb943e5d40c6229f9213ad20ad8f41f
Reporting entity
- Name
- World Courier Group, Inc.norm: world courier
Victim entity
- Name
- World Courier Group, Inc.norm: world courier
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Dec 12, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1041 Exfiltration Over C2 ChannelT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- assistance of law enforcement
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.