MalwareEmployee Data InvolvedDelayed DiscoveryPIIIDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENTMediumContained
O'Neal Industries
bd_95165656f3a6aea7 · schema v1 · pii pii-v1
Full breach record for O'Neal Industries →O'Neal Industries, Inc. experienced unauthorized access to computer systems in November 2022 via sophisticated malware that evaded virus detection. HR files containing social security numbers and personal information of former employees and their beneficiaries/dependents were accessed. Notification letters were sent March 30, 2023. External cybersecurity experts were engaged to investigate, strengthen the network, and monitor the dark web. Complimentary Experian IdentityWorks services were offered to affected individuals.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_c89265a50a659409Montana State AGfiled 2023-03-31Verified
- bd_f58b1da4f39c8133New Hampshire State AGfiled 2023-04-05(5d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-564996
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 31, 2023
- Raw hash
- ff52392afdc0c59dea2aff5183d152972323ec5280a97a3b48255dbf7c45213d
Reporting entity
- Name
- O'Neal Industriesnorm: o neal
Victim entity
- Name
- O'Neal Industriesnorm: o neal
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Mar 30, 2023
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1059 Command and Scripting InterpreterT1078 Valid Accounts
- Threat actor
- External
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.