NextBus, Inc.
bd_b7d764ccb182a38d · schema v1 · pii pii-v1
Full breach record for NextBus, Inc. →NextBus, Inc. detected suspicious activity on September 18, 2015, involving an unauthorized individual gaining access to a database containing account information (usernames, emails, phone numbers, passwords) via stolen login credentials. The company disabled the compromised account, increased password strength requirements, and blocked suspect traffic. Investigation was ongoing at the time of notice.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 18, 2015
Discovered
Oct 16, 2015
Filed
vs. sector median
15 wks faster
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.