AccidentalMisconfigurationCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
J.B. Hunt
bd_59eb7fd25276ddbb · schema v1 · pii pii-v1
Full breach record for J.B. Hunt →J.B. Hunt Transport, Inc. notified the New Hampshire Attorney General of a cybersecurity incident involving a configuration error in its Microsoft Power Apps portal. Unauthorized access to applicant data occurred between August 17, 2020, and July 2, 2021. The breach exposed names and Social Security numbers of 377 New Hampshire residents. J.B. Hunt offered one year of complimentary credit monitoring and identity restoration services through Experian to affected individuals.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_90f9ff5e002e9d73California State AGfiled 2021-10-20Candidate
- bd_e23585d36fb04feaDelaware State AGfiled 2021-10-20Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/j-b-hunt-transport-20211020.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 20, 2021
- Raw hash
- 8557e490064fb83534b96210a5aa20cc0edd1f50a67c4309ec77f7dd69b90871
Reporting entity
- Name
- J.B. Huntnorm: jb hunt
- Domain
- investor.jbhunt.com
Victim entity
- Name
- J.B. Huntnorm: jb hunt
- Domain
- investor.jbhunt.com
Incident
- Discovered
- Sep 10, 2021
- Materiality determined
- —
- Notification sent
- Oct 20, 2021
- Affected individuals
- 377
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1530 Data from Cloud Storage Object
- Threat actor
- External
- Regulator citations
- Notified New Hampshire Attorney General's Office
Compliance
- Time to disclose
- 6 weeks(40 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.