MalwareRansomwareData ExfiltratedData EncryptedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Onix Group
bd_a367c281680ad7bb · schema v1 · pii pii-v1
Full breach record for Onix Group →Onix Group LLC experienced a ransomware incident in March 2023 affecting internal systems. An unauthorized actor accessed the network between March 20 and March 27, 2023, using valid credentials, corrupted systems, and exfiltrated HR and payroll files containing names, SSNs, and financial account data. Onix engaged cybersecurity experts, secured systems, and offered one year of Experian IdentityWorks to affected individuals.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_bf19a87cbef3951cDelaware State AGfiled 2023-07-10(31d gap)Candidate
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2023/07/ELN-18053-Onix-Group-Ad-CM-1Y-Onix-Employee-Wave-3-r2prf.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 9, 2023
- Raw hash
- eda1c13c0e4ed8146b852fbf31fd395f554e9c0de820b13909c8d5704a5e8309
Reporting entity
- Name
- Onix Groupnorm: onix group
- Domain
- onixgroup.com
Victim entity
- Name
- Onix Groupnorm: onix group
- Domain
- onixgroup.com
Incident
- Discovered
- Mar 27, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 11 weeks(74 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.