HackingStolen CredentialsEmployee Data InvolvedIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICCREDENTIALSMediumContained
Hasbro, Inc.
bd_611efff30d8caf77 · schema v1 · pii pii-v1
Full breach record for Hasbro, Inc. →Hasbro, Inc. disclosed unauthorized access to employee email accounts and shared network folders. The incident occurred between September 15, 2017, and November 19, 2017, and was discovered on or around July 4, 2018. Affected data may include SSNs, driver's licenses, bank account numbers, medical/health insurance info, passport numbers, and credentials. Hasbro engaged forensic experts and law enforcement.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_47d530b67511f4a7Montana State AGfiled 2018-06-29(42d gap)Candidate
- bd_5f413023e3b1ef72California State AGfiled 2018-06-25(46d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-138767
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 10, 2018
- Raw hash
- 398bb953c1a09281c50bfcc38bca3c5bded0fc8c7e169411d7788db553972a27
Reporting entity
- Name
- Hasbro, Inc.norm: hasbro
Victim entity
- Name
- Hasbro, Inc.norm: hasbro
Incident
- Discovered
- Jul 4, 2018
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
Compliance
- Time to disclose
- 5 weeks(37 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.