MalwareRansomwareRansom DemandedRansom PaidData ExfiltratedData EncryptedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Major League Baseball Players Benefit Plan
bd_b28aa9b98c31a66c · schema v1 · pii pii-v1
Full breach record for Major League Baseball Players Benefit Plan →The Major League Baseball Players Benefit Plan reported a ransomware incident affecting Horizon Actuarial Services, LLC, which processed plan data. Unauthorized actors accessed servers on Nov 10-11, 2021, exfiltrating personal data including names, SSNs, and financial info. The plan paid a ransom and engaged forensic specialists. Notifications were sent to affected individuals in Jan 2022, offering 24 months of credit monitoring.
California clockDiscovered Nov 12, 2021 → Notified Jan 13, 202262d ✗ CA 60-day late19 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_512b2d6d8f582fd4Montana State AGfiled 2022-03-22Candidate
- bd_e72714fa9fdc5862New Hampshire State AGfiled 2022-03-22Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-551904
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 22, 2022
- Raw hash
- a16614f0de8ee8791532ec290b884bf0ba2201335f4fea0c8f47b9d3ca83602c
Reporting entity
- Name
- Major League Baseball Players Benefit Plannorm: major league baseball players benefit plan
Victim entity
- Name
- Major League Baseball Players Benefit Plannorm: major league baseball players benefit plan
Incident
- Discovered
- Nov 12, 2021
- Materiality determined
- —
- Notification sent
- Jan 13, 2022
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- Provided notice to the FBI
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 19 weeks(130 days from discovery to filing)
- Compliance flags
- CA 60-day late · 62d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Nov 12, 2021→ Notified: Jan 13, 202262d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.