MalwareRansomwarePhishingData ExfiltratedData EncryptedMulti-Stage ChainCustomer Data InvolvedPIIIDENTITY_BASICLowContained
Insight Partners
bd_64d25387317d3825 · schema v1 · pii pii-v1
Full breach record for Insight Partners →Insight Partners experienced a data breach where a threat actor used social engineering to gain access to HR and finance servers on October 25, 2024. The actor exfiltrated data and began encrypting servers on January 16, 2025, when the incident was detected. Insight Partners contained the incident, expelled the actor, and rebuilt affected systems. Personal data including identity information was compromised.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_df923439e078e2f6Maine State AGfiled 2025-09-16(1d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-609988
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 15, 2025
- Raw hash
- 3c6d77752fed28c2b73043f9671dd06a27c6bd86005260ed01aa657d795ace58
Reporting entity
- Name
- Insight Partnersnorm: insight partners
- Domain
- insightpartners.com
Victim entity
- Name
- Insight Partnersnorm: insight partners
- Domain
- insightpartners.com
Incident
- Discovered
- Jan 16, 2025
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1566 PhishingT1041 Exfiltration Over C2 ChannelT1486 Data Encrypted for Impact
- Threat actor
- External
- Regulator citations
- Notified law enforcement and regulatory authorities in relevant jurisdictions
- Initial access
- phishing_link
Compliance
- Time to disclose
- 35 weeks(242 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.