HackingVulnerability ExploitData ExfiltratedCustomer Data InvolvedDelayed DiscoveryPIIIDENTITY_BASICLowContained
ANHEUSER-BUSCH COMPANIES, LLC
bd_428032b9ce74821e · schema v1 · pii pii-v1
Full breach record for ANHEUSER-BUSCH COMPANIES, LLC →Sovos Compliance, LLC issued a New Hampshire data breach notice on November 30, 2023, regarding an incident involving Anheuser-Busch Companies. On May 31, 2023, unauthorized actors exploited a vulnerability in the MOVEit Transfer application to download personal information. Sovos took the application offline, engaged forensic experts, and notified law enforcement. Affected individuals are offered two years of credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/sovos-compliance-20231201.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 1, 2023
- Raw hash
- ce515fb2d2ac01dba48e6791e28e2ef694bb4db6e51d91582e4509f5966a7071
Reporting entity
- Name
- Sovos Compliance, LLCnorm: sovos compliance
Victim entity
- Name
- ANHEUSER-BUSCH COMPANIES, LLCnorm: anheuser busch companies
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Nov 30, 2023
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.