DisclosureLens
AccidentalFinancial ServicesFinanceDisposal ErrorData ExfiltratedIdentity (basic)Government IDFinancial accountMediumContained

MORGAN STANLEY SMITH BARNEY LLC

bd_6072fc7b4fa6d370 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Filed

Jul 10, 2020

To disclose

Affected

Not disclosed

Confidence

64%
Full breach record for MORGAN STANLEY SMITH BARNEY LLC4 incidents on file

Morgan Stanley Smith Barney LLC notified South Carolina residents of two data security incidents involving the improper disposal of computer equipment. In 2016, decommissioned devices contained unencrypted data. In 2019, a replaced server's encrypted disks contained residual data due to a software flaw. Morgan Stanley stated no unauthorized access was detected but offered 24 months of credit monitoring via Experian.

Incident timeline

Jan 1, 2016

Begins

Jul 10, 2020

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.