North American Risk Services, Inc.
bd_bad34ba23c2fe576 · schema v1 · pii pii-v1
Full breach record for North American Risk Services, Inc. →North American Risk Services, Inc. (NARS) experienced unauthorized access to employee email accounts from February 7, 2018, to March 27, 2018. The incident involved the exposure of personal information for 604 California residents, including names, Social Security numbers, driver's license numbers, financial account information, and medical/health insurance information. NARS engaged a third-party forensic investigator, confirmed the scope of the breach, and notified affected individuals via mail in October 2018. The company is offering one year of complimentary credit monitoring and identity restoration services.
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_292ab78179daee91Montana State AGfiled 2018-10-05Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-140508
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 5, 2018
- Raw hash
- 9694b40629b6e1ea3147a004ef4be3d5090b16e625e4b2468ed484d3ba117aea
Reporting entity
- Name
- North American Risk Services, Inc.norm: north american risk
Victim entity
- Name
- North American Risk Services, Inc.norm: north american risk
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Oct 5, 2018
- Affected individuals
- 604
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICPHICREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Regulator citations
- Providing notice to other state regulators
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.