CBIZ, INC.
bd_79465978a9228cee · schema v1 · pii pii-v1
Full breach record for CBIZ, INC. →7 incidents on fileCBIZ, Inc. notified individuals of a data incident involving MOVEit Transfer software. An unauthorized party exploited a vulnerability in MOVEit to access a server and download data between May 29 and June 5, 2023. Affected data included names, dates of birth, and Social Security numbers. CBIZ patched the vulnerability and offered two years of identity monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
May 29, 2023
Begins
May 31, 2023
Discovered
Sep 1, 2023
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Massachusetts State AGbd_59823e08633c31c12023-09-01Verified
- New Hampshire State AGbd_ab8685161ea5f6d12023-09-01Verified
- Indiana State AGbd_babe041abe73d82b2023-09-01Verified
Filing propagation · 4 filings · 4 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.