HackingVulnerability ExploitSupply Chain (3P Vendor)Data ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
COREBRIDGE FINANCIAL, INC.
bd_50e7b9fa8cff8208 · schema v1 · pii pii-v1
Full breach record for COREBRIDGE FINANCIAL, INC. →Corebridge Financial, Inc. reported a data breach affecting its customers via third-party vendor Pension Benefit Information, LLC (PBI). An unauthorized third party exploited a vulnerability in Progress Software's MOVEit Transfer to access PBI servers on May 29-30, 2023, and exfiltrated data. Affected data includes names, Social Security numbers, policy/account numbers, dates of birth, and addresses. Corebridge's own systems were not impacted. PBI notified law enforcement, patched servers, and offered 24 months of credit monitoring.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_52ef38ab67f176b3Oregon State AGfiled 2023-07-27Verified
- bd_f906eb0512385ff4Montana State AGfiled 2023-07-27Verified
- bd_36f8bc52ab1dd0c5Washington State AGfiled 2023-07-25(2d gap)Verified
- bd_fcf6e5ee79223a01SEC 8-Kfiled 2023-06-26(31d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-570927
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 27, 2023
- Raw hash
- 7d1cffa236a1cb2d8c21f72c4399546b10a15c25985e0b56a3b95155aa722ee8
Reporting entity
- Name
- Pension Benefit Information, LLCnorm: pension benefit information
- Domain
- mypensionbenefitinformation.com
Victim entity
- Name
- COREBRIDGE FINANCIAL, INC.norm: corebridge financial
- Domain
- corebridgefinancial.com
Incident
- Discovered
- May 31, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1195 Supply Chain CompromiseT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Third party
- via Pension Benefit Information, LLC
- Initial access
- supply_chain
Compliance
- Time to disclose
- 8 weeks(57 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.