CenturyLink
bd_ba14629d7b30e858 · schema v1 · pii pii-v1
Full breach record for CenturyLink →2 incidents on fileCenturyLink notified NH AG of a phishing incident compromising an employee email account. Discovered Feb 1, 2017; compromise likely started Jan 30, 2017. Affected 2 NH residents with PII (name, address, SSN, DOB). No financial data exposed. Remediation included stopping spam, training, and offering 1-year credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 30, 2017
Begins
Feb 1, 2017
Discovered
Feb 24, 2017
Filed
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Massachusetts State AGbd_fe5852acfd71dca12017-02-28 · +4dVerified
- Montana State AGbd_df381037acd1f9012017-02-20 · +4dCandidate
Filing propagation · 3 filings · 3 states
View merged incident ↗Pattern: first filing Feb 20 (MT), last Feb 28 (MA) — a 8-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.