HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENTMediumContained
CF ASTORIA HOLDING COMPANY, LLC
bd_59c363e8f675b095 · schema v1 · pii pii-v1
Full breach record for CF ASTORIA HOLDING COMPANY, LLC →Astoria Company LLC, a lead exchange connecting consumers with financial services, notified individuals of a cyber-attack in late January 2021. A security researcher gained unauthorized access to a system containing personal information. Astoria discovered the intrusion on Feb 8, 2021, secured systems, and reported the incident to the FBI. Affected data included names, addresses, SSNs, driver's license numbers, and employment information. The notice was filed with the Delaware Attorney General.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2021/12/Astoria-Notice-Letter-General.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 29, 2021
- Raw hash
- 902c88d9154bd84442068b7d72aa7caf6871587acf0bba26ba447eb5a57f8abb
Reporting entity
- Name
- CF ASTORIA HOLDING COMPANY, LLCnorm: cf astoria
- Domain
- astoriacompany.com
Victim entity
- Name
- CF ASTORIA HOLDING COMPANY, LLCnorm: cf astoria
- Domain
- astoriacompany.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- incident has been reported to the FBI
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.