HackingTargetedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
The Forward
bd_b222ea320c8293ed · schema v1 · pii pii-v1
Full breach record for The Forward →Forward Air Corporation reported a data breach occurring in November-December 2020. Unauthorized actors accessed systems and potentially viewed or took personal information including names, addresses, SSNs, driver's license numbers, passport numbers, and bank account numbers. The company engaged in investigation, notified regulators, and offered 12 months of credit monitoring via TransUnion.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_9366040c480f5817Montana State AGfiled 2021-09-24Candidate
- bd_9f6be7535a79c40cMaine State AGfiled 2021-09-24Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-545711
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 24, 2021
- Raw hash
- 44ed5029f8ba48fa83e2eadfa387f3f306e9c59a612ac41e95fdff4ac45ebed8
Reporting entity
- Name
- The Forwardnorm: the forward
- Domain
- forward.com
Victim entity
- Name
- The Forwardnorm: the forward
- Domain
- forward.com
Incident
- Discovered
- Dec 15, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- Notifying state regulators, as required
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 40 weeks(283 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.