NRI
bd_81c5e8d75d758258 · schema v1 · pii pii-v1
Full breach record for NRI →NRI USA, LLC experienced unauthorized access to two corporate email accounts between September 3 and October 23, 2019. The incident was discovered on October 15, 2019, when an unauthorized individual attempted to misdirect a payment. The attacker used valid credentials to access the accounts, potentially exposing personal information of employees, including names and employment details. NRI disabled the accounts, reset passwords, and engaged Kroll for identity monitoring. Remediation steps include implementing two-factor authentication and enhancing email security filters.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 3, 2019
Begins
Oct 15, 2019
Discovered
Aug 14, 2020
Filed
vs. sector median
+25 wks slower
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.