DisclosureLens
HackingManufacturingTechnologyManufacturingVulnerability ExploitZero-DaySupply Chain (3P Vendor)Data ExfiltratedCustomer Data InvolvedEmployee Data InvolvedIdentity (basic)Government IDPHIMediumContained

Prysmian Cables and Systems USA, LLC

bd_3c1f3df26f6d2d0c · schema v1 · pii pii-v1

Severity

Medium

Discovered

May 1, 2022

Filed

Jul 7, 2022

To disclose

10 weeks

Affected · nationwide

5645 in this filing

Linked

3 filings

Confidence

66%
Full breach record for Prysmian Cables and Systems USA, LLC

Prysmian Cables and Systems USA, LLC reported a data incident involving its third-party broker Aon PLC. An unauthorized third party exploited a zero-day vulnerability to access Aon systems between Dec 29, 2020, and Feb 25, 2022. Personal information of 564 current/former employees, including SSNs and health plan data, was temporarily obtained. Prysmian notified affected individuals on July 5, 2022, and offered 24 months of credit monitoring.

Incident timeline

undetected · 488 days
discovery → filing · 10 weeks / 67 days

Dec 29, 2020

Begins

May 1, 2022

Discovered

Jul 7, 2022

Filed

This filing is one of 3 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (2) · sorted by filing gap

Filing propagation · 3 filings · 3 states

View merged incident ↗
Indiana State AGJul 5 · first
New Hampshire State AG+2d · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.