HackingStolen CredentialsCapture Stored DataSupply Chain (3P Vendor)Data ExfiltratedCustomer Data InvolvedEmployee Data InvolvedPHIIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Working at British Airways
bd_558f37da1cb2363b · schema v1 · pii pii-v1
Full breach record for Working at British Airways →British Airways Plc notified the New Hampshire AG of a third-party supply chain breach involving vendor Brightline, which serves Aetna (British Airways' behavioral health plan provider). On Jan 31, 2023, Brightline's GoAnywhere MFT instance was compromised via unauthorized credentials, leading to PHI and PII exfiltration. Three NH residents were affected. The incident was contained, and law enforcement was engaged.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed3 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/british-airways-20240510.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 10, 2024
- Raw hash
- 2efe672f61cddc75d8540d0efb7c83bf5df3acf4fc42f8958af7110d84557ace
Reporting entity
- Name
- Working at British Airwaysnorm: working at british airways
- Domain
- careers.ba.com
Victim entity
- Name
- Working at British Airwaysnorm: working at british airways
- Domain
- careers.ba.com
Incident
- Discovered
- Feb 4, 2023
- Materiality determined
- —
- Notification sent
- May 10, 2024
- Affected individuals
- 3
- Data types
- PHIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain CompromiseT1041 Exfiltration Over C2 ChannelT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney General Consumer Protection & Antitrust Bureau
- Initial access
- supply_chain
Compliance
- Time to disclose
- 15 months(461 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.