HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICPIILowContained
UNITE HERE!
bd_6d375ec8e2c269cf · schema v1 · pii pii-v1
Full breach record for UNITE HERE! →UNITE HERE notified consumers of a cybersecurity incident on October 20, 2023, where an unauthorized third party accessed systems containing personal information of members and staff from certain local unions and health funds. Data accessed included names and variable text. UNITE HERE reset passwords, engaged forensic specialists, notified law enforcement, and offered credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-02-23-unite-here-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 23, 2023
- Raw hash
- 12b7e7de306940532377bd4921a3d5ca7a220f0276045ca989dd2d207f78629e
Reporting entity
- Name
- UNITE HERE!norm: unite here
- Domain
- unitehere.org
Victim entity
- Name
- UNITE HERE!norm: unite here
- Domain
- unitehere.org
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Feb 23, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICPII
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- notified law enforcement
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.