American National Group, LLC
bd_563733aa517c3250 · schema v1 · pii pii-v1
American National Group, LLC disclosed a data breach stemming from a zero-day vulnerability in Progress Software's MOVEit Transfer application. An unauthorized third party accessed systems on May 28, 2023, exfiltrating customer PII including SSNs, DOBs, and medical treatment information. American National took the application offline, engaged forensic advisors, and notified law enforcement. Affected individuals were offered two years of Experian Identity Works protection.
J jump to incidentP pin to compareR raw source
Incident timeline
May 28, 2023
Begins
May 31, 2023
Discovered
Aug 9, 2023
Filed
vs. sector median
+1 wks slower
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.