MalwareRansomwareData EncryptedCustomer Data InvolvedEmployee Data InvolvedPIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
RFI ENTERPRISES, INC.
bd_427ed0ac276d7ee8 · schema v1 · pii pii-v1
Full breach record for RFI ENTERPRISES, INC. →On or about February 18, 2022, RFI Enterprises, Inc. suffered a ransomware attack that may have resulted in the inadvertent exposure of personal information of current and former customers and employees, including names, addresses, Social Security numbers, dates of birth, and driver's license numbers. The company engaged cybersecurity counsel, investigated the incident, and offered 12-month credit monitoring to affected individuals. A consumer notification letter was sent December 6, 2022.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-559907
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 9, 2022
- Raw hash
- 1413f26d1491a259f2d4e252e6a20261c4368b0cda99991d20585e26287183fc
Reporting entity
- Name
- RFI Security, Inc.norm: rfi security
Victim entity
- Name
- RFI ENTERPRISES, INC.norm: rfi enterprises
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Dec 6, 2022
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.