MalwareRansomwareData ExfiltratedCustomer Data InvolvedSupply Chain (3P Vendor)IDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Spiezle
bd_a68d483e20c5e4d8 · schema v1 · pii pii-v1
Full breach record for Spiezle →Spiezle Group, Inc. disclosed a cybersecurity incident discovered on June 25, 2021, involving malware deployed by a third-party vendor. The malware encrypted files and allowed unauthorized access to employee records containing names, Social Security numbers, dates of birth, and employment start dates. Spiezle engaged forensic investigators, removed the third-party, hardened defenses, and offered 12 months of credit monitoring to affected employees.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_957b79817cb57edaSouth Carolina State AGfiled 2021-07-30Verified
- bd_c17531074cef9c06California State AGfiled 2021-07-29(1d gap)Candidate
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2021/08/Spiezle-Notice-to-Residents.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 30, 2021
- Raw hash
- 99e73044d776fe16895f29f7160929a14664390f78217b9a40e754cd81f5091c
Reporting entity
- Name
- Spiezlenorm: spiezle
- Domain
- spiezle.com
Victim entity
- Name
- Spiezlenorm: spiezle
- Domain
- spiezle.com
Incident
- Discovered
- Jun 25, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain CompromiseT1486 Data Encrypted for Impact
- Threat actor
- Partner
- Initial access
- supply_chain
Compliance
- Time to disclose
- 5 weeks(35 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.