HackingStolen CredentialsCustomer Data InvolvedCREDENTIALSIDENTITY_BASICLowContained
USI Insurance
bd_975139ae8c3390e1 · schema v1 · pii pii-v1
Full breach record for USI Insurance →USI Insurance Services LLC notified the California Attorney General of a security incident where malicious software was installed on their system around October 2, 2013. The malware allowed an unauthorized party to view files containing usernames and passwords. The company disabled the compromised credentials and engaged a third-party forensic team. Affected individuals' names, mailing addresses, and client definitions were stored on the system. The company offered 12 months of identity protection services.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-43247
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 13, 2013
- Raw hash
- 959162899c580f2fba0ea835314ec455027c19d7900ae1ce6dcdc10d3c634722
Reporting entity
- Name
- USI Consulting Groupnorm: usi consulting
- Domain
- usicg.com
Victim entity
- Name
- USI Insurancenorm: usi insurance
- Domain
- jobs.usi.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Nov 14, 2013
- Affected individuals
- Not disclosed
- Data types
- CREDENTIALSIDENTITY_BASIC
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid AccountsT1056 Input Capture
- Threat actor
- External
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.