HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTCREDENTIALSHEALTH_BASICMediumContained
Athens Insurance Agency
bd_780dc2de5b333aef · schema v1 · pii pii-v1
Full breach record for Athens Insurance Agency →Athens Insurance Services, Inc. reported a data breach involving unauthorized access to an employee email account between July 1, 2019, and September 17, 2019. The incident potentially exposed personal information including names, SSNs, DOBs, driver's license numbers, financial account numbers, and health information. Athens engaged forensic investigators, secured the account, and offered one year of credit monitoring.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_e525c1186e8e42faCalifornia State AGfiled 2020-04-23(48d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-188003
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 6, 2020
- Raw hash
- 75ad61c3f73b79a0bd5222f4bfaf32e66a5fd2b8bf976c654a00f374c7a41fbd
Reporting entity
- Name
- Athens Insurance Agencynorm: athens insurance agency
- Domain
- athensins.com
Victim entity
- Name
- Athens Insurance Agencynorm: athens insurance agency
- Domain
- athensins.com
Incident
- Discovered
- Sep 17, 2019
- Materiality determined
- Mar 1, 2020
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTCREDENTIALSHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 24 weeks(171 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.