MalwareRansomwareData ExfiltratedData PublishedRansom DemandedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
The Franklin Mutual Insurance Group
bd_72eb60e70797dc53 · schema v1 · pii pii-v1
Full breach record for The Franklin Mutual Insurance Group →The Franklin Mutual Insurance Group experienced a ransomware incident on March 11, 2023, where an unknown third party remotely accessed systems and exfiltrated names and Social Security numbers. The data was posted on an attacker-maintained website. FMI reported the incident to the FBI and Secret Service, terminated access, and offered 12 months of credit monitoring and identity theft protection to affected individuals.
Vermont clock✗ VT AG >45 bday34 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_642c5f3fadfee06aNew Hampshire State AGfiled 2023-11-06Verified
- bd_dced8e85809c411aMaine State AGfiled 2023-11-06Verified
- bd_abd5f58c0362dc37New Hampshire State AGfiled 2023-07-13(116d gap)Candidate
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-11-06-franklin-mutual-insurance-group-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 6, 2023
- Raw hash
- 1b73ae1e9b4788dfdca0018ffd836a186d2fd396323ceee15aaf3b779ab6473d
Reporting entity
- Name
- The Franklin Mutual Insurance Groupnorm: the franklin mutual insurance
Victim entity
- Name
- The Franklin Mutual Insurance Groupnorm: the franklin mutual insurance
Incident
- Discovered
- Mar 11, 2023
- Materiality determined
- Nov 6, 2023
- Notification sent
- Nov 6, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 ChannelT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Reported the incident to the Federal Bureau of InvestigationReported the incident to the Secret Service
- Initial access
- external_remote_services
Compliance
- Time to disclose
- 34 weeks(240 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.