MalwareRansomwareSupply Chain (3P Vendor)Data EncryptedCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTMediumContained
Federal Home Loan Mortgage Corporation
bd_53a92a86dda03bc2 · schema v1 · pii pii-v1
Full breach record for Federal Home Loan Mortgage Corporation →Freddie Mac notified borrowers that a third-party due diligence vendor suffered a ransomware attack earlier in 2020. Loan application data, including SSNs and bank account info, was on the vendor's systems. The vendor found no evidence of data access, but Freddie Mac offered two years of credit monitoring as a precaution.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_380112a0064aa515Oregon State AGfiled 2020-07-07Candidate
- bd_99679413d2e2d7b2Washington State AGfiled 2020-07-07Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-191772
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 7, 2020
- Raw hash
- 1a870831deedeb379a60f37d3448e0b8ae0a628f8bbb8d72fd08f227b5cc07dc
Reporting entity
- Name
- Federal Home Loan Mortgage Corporationnorm: federal home loan mortgage
Victim entity
- Name
- Federal Home Loan Mortgage Corporationnorm: federal home loan mortgage
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jul 7, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Third party
- via due diligence vendor
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.