CISCO SYSTEMS, INC.
bd_3d2551753ac82183 · schema v1 · pii pii-v1
Full breach record for CISCO SYSTEMS, INC. →6 incidents on fileCisco Systems disclosed that job application data was exposed on its Professional Careers mobile website due to an incorrect security setting on a third-party host. The misconfiguration occurred in two windows: August-September 2015 and July-August 2016. Exposed data included names, addresses, emails, phone numbers, usernames, passwords, security question answers, resumes, and voluntary demographic info. Cisco corrected the setting, reset passwords, and required users to reset credentials. No unauthorized access beyond the reporting researcher was confirmed, though anomalous connections were noted.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 1, 2015
Begins
Oct 25, 2016
Filed
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.