Orange Business Services U.S., Inc.
bd_589827cc4fe22218 · schema v1 · pii pii-v1
Full breach record for Orange Business Services U.S., Inc. →Orange Business Services U.S., Inc. notified employees of a security incident where an unauthorized individual accessed servers on Jan 4, 2022, by exploiting a third-party firewall vulnerability. The incident involved employee PII including SSNs and DOBs. Orange Silicon Valley, an affiliate, was the initial victim. Remediation included firewall removal and enhanced security protocols. Credit monitoring was offered.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 4, 2022
Begins
Mar 17, 2022
Discovered
Aug 3, 2022
Filed
vs. sector median
+1 wks slower
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Maine State AGbd_10d8d178fff3f6172022-08-03Candidate
- California State AGbd_3177d151dffa0b892022-08-03Verified
- Indiana State AGbd_858590dca059b9552022-08-03Verified
- Massachusetts State AGbd_8b3bd2bd7be8d0852022-08-03Verified
Filing propagation · 5 filings · 5 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.