AccidentalMisconfigurationData ExfiltratedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
J.B. Hunt
bd_90f9ff5e002e9d73 · schema v1 · pii pii-v1
Full breach record for J.B. Hunt →J.B. Hunt Transport, Inc. reported a data breach involving a configuration error in a Microsoft Power Apps portal used for driver applications. Unauthorized access occurred between August 17, 2020, and July 2, 2021, exposing applicant names and Social Security numbers. The company offered one year of Experian IdentityWorks and remediated cloud permissions.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_59eb7fd25276ddbbNew Hampshire State AGfiled 2021-10-20Verified
- bd_e23585d36fb04feaDelaware State AGfiled 2021-10-20Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-546658
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 20, 2021
- Raw hash
- cfe67b148eacbeb449d089a9835222f5510a0ca61bdf4f2d16d0908db3fdd317
Reporting entity
- Name
- J.B. Huntnorm: jb hunt
- Domain
- investor.jbhunt.com
Victim entity
- Name
- J.B. Huntnorm: jb hunt
- Domain
- investor.jbhunt.com
Incident
- Discovered
- Sep 10, 2021
- Materiality determined
- Sep 10, 2021
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
Compliance
- Time to disclose
- 6 weeks(40 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.