HackingCustomer Data InvolvedPIIIDENTITY_BASICLowContained
DISCOVER FINANCIAL SERVICES
bd_a3bbd1f93a1ecd79 · schema v1 · pii pii-v1
Full breach record for DISCOVER FINANCIAL SERVICES →Discover Financial Services notified the NH Attorney General of a security incident on March 19, 2024. On Dec 12, 2023, the company learned a relative of an employee (non-employee) potentially accessed personal information stored in the employee's work area. One NH resident was affected. No misuse indicated. Company provided notification and 2 years of Experian IdentityWorks monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/discover-financial-services-20240319.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 19, 2024
- Raw hash
- 991d4140090093cf437a2ac02a7e8127beba7d229adc975327fb7145ac67827a
Reporting entity
- Name
- DISCOVER FINANCIAL SERVICESnorm: discover financial
Victim entity
- Name
- DISCOVER FINANCIAL SERVICESnorm: discover financial
Incident
- Discovered
- Dec 12, 2023
- Materiality determined
- —
- Notification sent
- Mar 6, 2024
- Affected individuals
- 1
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified Attorney General John Formella Consumer Protection Bureau
- Initial access
- trusted_relationship
Compliance
- Time to disclose
- 14 weeks(98 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.