TransUnion
bd_6745fb83ae85bf6d · schema v1 · pii pii-v1
Full breach record for TransUnion →13 incidents on fileTransUnion LLC notified consumers in Vermont of a cybersecurity incident where unauthorized actors exploited a bypass in individual verification measures for direct-to-consumer products. Actors impersonated consumers using personal information from non-TransUnion sources to access the consumer portal. The incident affected individuals between December 1, 2022, and January 13, 2023. TransUnion stopped the bypass, conducted an investigation, and offered one year of complimentary credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 1, 2022
Begins
Jan 13, 2023
Discovered
Mar 10, 2023
Filed
vs. sector median
on median
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Maine State AGbd_803d68e3399d67bc2023-03-10Candidate
- Indiana State AGbd_a9da5d484a9f88c82023-03-10Verified
- Massachusetts State AGbd_cf9597e12a284aea2023-03-10Verified
Filing propagation · 4 filings · 4 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.