HackingStolen CredentialsCustomer Data InvolvedPIIIDENTITY_BASICCREDENTIALSLowContained
WEB.COM GROUP, INC.
bd_7342ebcd55ce9d39 · schema v1 · pii pii-v1
Full breach record for WEB.COM GROUP, INC. →Web.com Group disclosed that a third party gained unauthorized access to computer systems in late August 2019. The incident involved the access of customer account information, including names, addresses, phone numbers, emails, and service details. No credit card data was compromised. Web.com engaged a cybersecurity firm, notified federal authorities, and required password resets for affected users.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_127a20deb8e7d77eCalifornia State AGfiled 2019-11-05(14d gap)Candidate
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2019/10/Web_dot_com-Customer-Notice-Email-template-final.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 22, 2019
- Raw hash
- d757cf76febdf42029889309c5802af0bad3eccff77cce8adc109e0e4e693557
Reporting entity
- Name
- WEB.COM GROUP, INC.norm: webcom group
Victim entity
- Name
- WEB.COM GROUP, INC.norm: webcom group
Incident
- Discovered
- Oct 16, 2019
- Materiality determined
- —
- Notification sent
- Oct 16, 2019
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- reported the intrusion to federal authorities
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 6 days(6 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.