HackingData ExfiltratedCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTHEALTH_BASICPHIMediumContained
SAIF CORPORATION
bd_5c20e4602451a95f · schema v1 · pii pii-v1
Full breach record for SAIF CORPORATION →SAIF Corporation notified the Idaho Attorney General of a data incident occurring on October 24, 2022, where an unauthorized third party gained access to its network. The breach affected archived policyholder and claimant data, potentially exposing SSNs, financial account numbers, and medical information. No evidence of misuse was found. SAIF offered 12 months of free credit monitoring and is reviewing internal security policies.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_3747c8fdc5439062Oregon State AGfiled 2022-12-07Candidate
Source provenance
- Source URL
- https://ag.idaho.gov/content/uploads/2022/12/12-07-22-SAIF-Corporation.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 7, 2022
- Raw hash
- 73434d8ad25a3baa0ca25beed9f0a73c361490b9911f927af70c37624f87dba0
Reporting entity
- Name
- SAIF CORPORATIONnorm: saif
Victim entity
- Name
- SAIF CORPORATIONnorm: saif
Incident
- Discovered
- Oct 27, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTHEALTH_BASICPHI
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- Notified Idaho Attorney General's Office Consumer Protection Division
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 6 weeks(41 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.