HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNTMediumContained
WIND RIVER SYSTEMS, INC.
bd_ac65a2510c4ce464 · schema v1 · pii pii-v1
Full breach record for WIND RIVER SYSTEMS, INC. →Wind River Systems, Inc. notified the California Attorney General of a security incident occurring between September 16 and September 30, 2020. Unauthorized access to network files via valid credentials may have exposed personal information including names, dates of birth, SSNs, driver's license numbers, health information, and financial account data. The company engaged law enforcement and outside experts, who determined some information was available but no evidence of misuse was found. Additional security monitoring was implemented.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_252019d9f4dc3023Maine State AGfiled 2021-01-29Candidate
- bd_e27443688219b1e5Montana State AGfiled 2021-01-29Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-537557
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 29, 2021
- Raw hash
- d8b8557fd3cb293cfbf0eaf16d36abee9cfeaabf2a9fc6936c9ba1e9edb1567f
Reporting entity
- Name
- WIND RIVER SYSTEMS, INC.norm: wind river
Victim entity
- Name
- WIND RIVER SYSTEMS, INC.norm: wind river
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.