HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
SinglePoint Outsourcing, Inc.
bd_ac0a5785760e6fc1 · schema v1 · pii pii-v1
Full breach record for SinglePoint Outsourcing, Inc. →SinglePoint Outsourcing notified consumers of a data breach where an unauthorized individual acquired files containing names, SSNs, DOBs, driver's license numbers, and bank account information between Nov 8-9, 2023. Incident discovered Nov 30, 2023. SinglePoint engaged forensic specialists, reset passwords, and offered 12 months of credit monitoring.
Vermont clock✗ VT AG >45 bday11 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
A leak claim by play about this victim predates this filing by 75 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_5f14395a0e1f06bdLeak Siteplayfiled 2023-11-28(75d gap)Verified
Regulatory filings (2) · sorted by filing gap
- bd_772b7a9e530ef230California State AGfiled 2024-03-26(43d gap)Verified
- bd_316cd5a987b7761aCalifornia State AGfiled 2024-04-12(60d gap)Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-02-12-singlepoint-outsourcing-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 12, 2024
- Raw hash
- dc5f49bd817bdc3da832908b54cdfd9ce19fa5609441c5fea30cb9268056349c
Reporting entity
- Name
- SinglePoint Outsourcing, Inc.norm: singlepoint outsourcing
- Domain
- single-point.com
Victim entity
- Name
- SinglePoint Outsourcing, Inc.norm: singlepoint outsourcing
- Domain
- single-point.com
Incident
- Discovered
- Nov 30, 2023
- Materiality determined
- —
- Notification sent
- Feb 28, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 11 weeks(74 days from discovery to filing)
- Compliance flags
- VT AG >45 bdayLeak >30d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.