Social EngineeringTelecom & MediaInformationPhishingStolen CredentialsCustomer Data InvolvedTargetedGovernment IDCredentialsMediumContained
AT&T INC.
bd_3a02a71ddd82b01f · schema v1 · pii pii-v1
Full breach record for AT&T INC. →19 incidents on fileAT&T notified Montana residents of unauthorized access to online accounts between Jan 25 and Apr 20, 2017. Attackers used stolen credentials, likely obtained via phishing, to view driver's license numbers. AT&T locked accounts and offered credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 25, 2017
Begins
May 19, 2017
Filed
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- New Hampshire State AGbd_154f5cf05e912da12017-05-19Verified
- Massachusetts State AGbd_96ee6b72561f718c2017-05-19Verified
Filing propagation · 3 filings · 3 states
View merged incident ↗New Hampshire State AGMay 19 · first
Massachusetts State AGMay 19 · first
Montana State AGMay 19 · first · this page
Evidence ladder
Leak-site claim
Attacker assertion only. Establishes: claim date, group, alleged victim.
Press / market report
Unlocks: incident narrative, operational impact. Still no compliance clock.
State AG / regulator filingThis record
Unlocks: discovery date, data types, affected count, compliance clock.
SEC 8-K / victim statement
Unlocks: materiality, stated response, full audit trail. Ceiling removed.