AccidentalMisconfigurationCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
TOYOTA MOTOR CREDIT CORPORATION
bd_478252a5af7af618 · schema v1 · pii pii-v1
Full breach record for TOYOTA MOTOR CREDIT CORPORATION →Toyota Financial Services, Inc. reported a data breach where certain customer accounts were mistakenly linked to another customer's account due to a technical error in the account-linking feature. This misconfiguration allowed some customers to view personal data (name, address, partial SSN, account number) of other customers via the website, app, or IVR. The incident occurred on September 10, 2021. TFS investigated, de-linked affected accounts, and implemented additional safeguards. No bank account numbers or full SSNs were exposed.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-586799
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 11, 2024
- Raw hash
- 8c74cab0c484e5b3a27c9c4b69dde1f8b8318c98596613d6a20e449cbb67803e
Reporting entity
- Name
- TOYOTA MOTOR CREDIT CORPORATIONnorm: toyota motor credit
Victim entity
- Name
- TOYOTA MOTOR CREDIT CORPORATIONnorm: toyota motor credit
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unknown
- Regulator citations
- Notifying applicable regulatory authorities
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.