HackingVulnerability ExploitData ExfiltratedCustomer Data InvolvedIDENTITY_BASICLowContained
TD AMERITRADE CLEARING, INC.
bd_5b823752842f2542 · schema v1 · pii pii-v1
Full breach record for TD AMERITRADE CLEARING, INC. →TD Ameritrade, a subsidiary of Charles Schwab, disclosed a security incident involving MOVEit Transfer software. Between May 28 and May 30, 2023, unauthorized individuals accessed the application and stole personal information, including names. The incident was discovered on May 30, 2023. TD Ameritrade halted use of the software, engaged independent experts, and notified law enforcement. Affected individuals were offered credit monitoring services.
Leak gap clock⏱ Leak >30d10 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 2 about the same incident.View merged incident
A leak claim by cl0p about this victim predates this filing by 33 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_bbf1d3a4299b3121California State AGfiled 2023-08-08(1d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/td-ameritrade-charles-schwab-20230809.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 9, 2023
- Raw hash
- d43aa61738503ae0e530c51b6355b59b2216b869e90b61c5e386704068ea11c7
Reporting entity
- Name
- TD Ameritrade, Inc. and Charles Schwab & Co., Inc.norm: td ameritrade inc and charles schwab
Victim entity
- Name
- TD AMERITRADE CLEARING, INC.norm: td ameritrade clearing
- Domain
- tdameritrade.com
Incident
- Discovered
- May 30, 2023
- Materiality determined
- —
- Notification sent
- Aug 8, 2023
- Affected individuals
- 257
- Data types
- IDENTITY_BASIC
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 10 weeks(71 days from discovery to filing)
- Compliance flags
- Leak >30d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.