HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedPIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
TaskRabbit, Inc.
bd_43620444acac7615 · schema v1 · pii pii-v1
Full breach record for TaskRabbit, Inc. →TaskRabbit, Inc. issued a sample breach notification to Delaware residents regarding an incident where an unauthorized third party accessed the TaskRabbit database. The breach involved the theft of customer records containing names, email addresses, hashed passwords, and in some cases, Social Security numbers. The incident is categorized as unauthorized access involving the use of stolen credentials.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2018/06/TaskRabbit-Sample-Notice.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 14, 2018
- Raw hash
- f6bca2d86f91f363152eafb802ba62fe588c272345e87a89b047ca96b33f0d27
Reporting entity
- Name
- TaskRabbit, Inc.norm: taskrabbit
- Domain
- taskrabbit.com
Victim entity
- Name
- TaskRabbit, Inc.norm: taskrabbit
- Domain
- taskrabbit.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1119 Automated Collection
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.