HackingSupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
HERITAGE LIFE INSURANCE COMPANY
bd_4b9699f3bfd93e35 · schema v1 · pii pii-v1
Full breach record for HERITAGE LIFE INSURANCE COMPANY →Heritage Life Insurance Company notified the California AG of a data breach involving its managed services provider, Inline Network Integration, LLC. On March 12, 2022, Inline detected unusual activity and secured its network. An investigation revealed an unauthorized actor may have acquired customer data, including that of Heritage Life. Affected individuals may have had their name and other personal information exposed. Inline engaged cybersecurity firms, reported to the FBI, and offered credit monitoring.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_de282c076ab82524Montana State AGfiled 2022-07-14Verified
- bd_ed52f06bbb2c84e1Oregon State AGfiled 2022-07-14Verified
- bd_32fe7e85d055dc7cWashington State AGfiled 2022-07-08(6d gap)Verified
- bd_7cced443f4d63d32Maine State AGfiled 2022-07-08(6d gap)Candidate
Show 1 more filing ↓Show fewer ↑up to 7d gap
- bd_7bf68d72b35a2952Maine State AGfiled 2022-07-07(7d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-555273
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 14, 2022
- Raw hash
- e194b32f20d5551a48848fbc1c261ea3e8d4c8a4e3c4d237008106ea0f814124
Reporting entity
- Name
- HERITAGE LIFE INSURANCE COMPANYnorm: heritage life insurance
Victim entity
- Name
- HERITAGE LIFE INSURANCE COMPANYnorm: heritage life insurance
Incident
- Discovered
- Mar 12, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Reported the incident to the FBI’s Internet Crime Complaint Center
- Third party
- via Inline Network Integration, LLC
Compliance
- Time to disclose
- 18 weeks(124 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.