AccidentalMisdeliverySupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
EDWARD D. JONES & CO., L.P.
bd_97524b07baa454c1 · schema v1 · pii pii-v1
Full breach record for EDWARD D. JONES & CO., L.P. →Edward D. Jones & Co, L.P. reported a data security breach in California involving a third-party service provider, PricewaterhouseCoopers LLP (PwC). On April 26, 2018, PwC mistakenly provided a file containing client names and Social Security numbers to another financial services company via a secure portal. The file was accessed briefly by one employee before being deleted. Edward Jones consulted law enforcement and provided one year of free credit monitoring via Equifax to affected clients.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-136767
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 4, 2018
- Raw hash
- 314a503f41acd8825dfe1595c5bc7c723a586661880e5718c8b2f8eef554ca35
Reporting entity
- Name
- EDWARD D. JONES & CO., L.P.norm: edward d jones
- Domain
- edwardjones.com
Victim entity
- Name
- EDWARD D. JONES & CO., L.P.norm: edward d jones
- Domain
- edwardjones.com
Incident
- Discovered
- Apr 26, 2018
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- Partner
- Third party
- via PricewaterhouseCoopers LLP
- Initial access
- supply_chain
Compliance
- Time to disclose
- 6 weeks(39 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.