Social EngineeringPhishingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICCREDENTIALSLowContained
Miyoshi America, Inc.
bd_82975a58e1446211 · schema v1 · pii pii-v1
Full breach record for Miyoshi America, Inc. →Miyoshi America experienced unauthorized access to an employee email account starting March 7, 2023, likely via phishing. The incident involved access to customer data including names and other identifiers. The company secured the account, investigated the scope, and offered 24 months of credit monitoring to affected individuals.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_408dfda70cd754adMaine State AGfiled 2023-05-04Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/miyoshi-america-20230504.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 4, 2023
- Raw hash
- 4a53be12db3c5136189e3f014cace347a1c30c484d929c09534f8b318bd98c43
Reporting entity
- Name
- Miyoshi America, Inc.norm: miyoshi america
- Domain
- miyoshiamerica.com
Victim entity
- Name
- Miyoshi America, Inc.norm: miyoshi america
- Domain
- miyoshiamerica.com
Incident
- Discovered
- Mar 7, 2023
- Materiality determined
- Apr 21, 2023
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICCREDENTIALS
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Initial access
- phishing_link
Compliance
- Time to disclose
- 8 weeks(58 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.