DisclosureLens
HackingTelecom & MediaInformationStolen CredentialsBrute ForceCustomer Data InvolvedIdentity (basic)Government IDCredentialsFinancial accountHighContained

United States Cellular Corporation

bd_50af30c475e7ca22 · schema v1 · pii pii-v1

Severity

High

Discovered

Filed

Jun 27, 2017

To disclose

Affected · nationwide

1,85247 in this filing

Confidence

66%

U.S. Cellular reported that unauthorized individuals accessed online user accounts starting in April 2017 using automated attacks with stolen credentials from other breaches. Approximately 1,852 customers were affected, including 47 New Hampshire residents. Compromised data included names, SSNs, addresses, phone numbers, and billing info. U.S. Cellular reset passwords, disabled former customer accounts, implemented technical controls, and offered credit monitoring.

Incident timeline

Apr 1, 2017

Begins

Jun 27, 2017

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1,852 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.