HackingFinancial ServicesFinanceCapture Stored DataData ExfiltratedCustomer Data InvolvedDelayed DiscoveryPIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
TD Ameritrade. Inc
bd_5160d22e69e17561 · schema v1 · pii pii-v1
Full breach record for TD Ameritrade. Inc →Scottrade, Inc. (brokerage, Member FINRA/SIPC) suffered unauthorized access to a client database over a period of several months between late 2013 and early 2014. Federal law enforcement officials informed Scottrade of the breach, which involved theft of client names and street addresses; SSNs and email addresses were present but contact information was the primary target. Clients were notified on October 2, 2015, with AllClear ID identity protection offered.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-58084
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 1, 2015
- Raw hash
- 7f194216b39697e68b5f7efb81f6c0b28b2f419988a64ef01477019fda132eb4
Reporting entity
- Name
- TD Ameritrade. Incnorm: td ameritrade
Victim entity
- Name
- TD Ameritrade. Incnorm: td ameritrade
- Industry
- Financial Servicesllm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Oct 2, 2015
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1530 Data from Cloud Storage Object
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified California Attorney General per SB 24 data breach reporting requirementCoordinated with federal law enforcement prior to client notification
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.