MisusePrivilege AbuseEmployee Data InvolvedCustomer Data InvolvedPIIFINANCIAL_ACCOUNTCREDENTIALSLowContained
Capital One
bd_38e31ab419c42fe7 · schema v1 · pii pii-v1
Full breach record for Capital One →Capital One notified affected individuals that a former employee accessed and attempted unauthorized transactions on credit card accounts between August 11, 2022, and May 22, 2023. The employee no longer has access. Capital One offered two years of free TransUnion credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/capital-one-20230616.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 16, 2023
- Raw hash
- 9e1204a3ff27bfdbb028b8ffb7fd0b79bcf0f1e28283ca8485758738d884e9c0
Reporting entity
- Name
- Capital Onenorm: capital one
- Domain
- capitalone.com
Victim entity
- Name
- Capital Onenorm: capital one
- Domain
- capitalone.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIFINANCIAL_ACCOUNTCREDENTIALS
- Attack vector
- Insider
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- InternalFinancial
- Initial access
- insider_action
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.