HackingFinancial ServicesFinanceCapture Stored DataData ExfiltratedCustomer Data InvolvedDelayed DiscoveryPIIIDENTITY_BASICLowContained
KELLY & ASSOCIATES INSURANCE GROUP, INC.
bd_4634d1937c2de35f · schema v1 · pii pii-v1
Full breach record for KELLY & ASSOCIATES INSURANCE GROUP, INC. →Kelly & Associates Insurance Group, Inc. ('Kelly Benefits'), a benefit enrollment services provider, suffered unauthorized access between December 12–17, 2024, during which certain files were copied and taken. A detailed review completed March 3, 2025 identified affected individuals' personal information. The FBI was notified. Consumer notifications were mailed April 9, 2025, with IDX credit monitoring offered.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-603420
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 30, 2025
- Raw hash
- 139e041f099433b814a59618a70a9c31bcaaaf453b88353bcbd3d9a550b82c7d
Reporting entity
- Name
- KELLY & ASSOCIATES INSURANCE GROUP, INC.norm: kelly associates insurance
- Domain
- kellybenefits.com
Victim entity
- Name
- KELLY & ASSOCIATES INSURANCE GROUP, INC.norm: kelly associates insurance
- Domain
- kellybenefits.com
- Industry
- Financial Servicesllm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Apr 9, 2025
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1119 Automated CollectionT1074 Data StagedT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Reported to the Federal Bureau of Investigation
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.