PAYPAL, INC.
bd_523acb840ed66f31 · schema v1 · pii pii-v1
Full breach record for PAYPAL, INC. →3 incidents on filePayPal confirmed unauthorized access to customer accounts using login credentials between Dec 6-8, 2022. The incident was discovered on Dec 20, 2022. Affected data may include name, address, SSN, ITIN, and DOB. PayPal reset passwords, implemented enhanced security controls, and offered two years of Equifax identity monitoring. No evidence suggests credentials were obtained from PayPal systems.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 6, 2022
Begins
Dec 20, 2022
Discovered
Jan 18, 2023
Filed
vs. sector median
5 wks faster
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- Massachusetts State AGbd_2381991d8ce7e2422023-01-18Verified
- Washington State AGbd_23c5745c2f3389382023-01-18Verified
- Indiana State AGbd_622a569cab26bff72023-01-18Verified
- Oregon State AGbd_a2e5f3a545f483792023-01-18Verified
Show 2 more filings ↓Show fewer ↑up to 1d gap
- Maine State AGbd_add16c56f5a6da9d2023-01-18Verified
- New Hampshire State AGbd_b77eec4b92da362d2023-01-17 · +1dCandidate
Filing propagation · 7 filings · 7 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.