FEDERALItem 1.05 · mandatoryUnknownFinancial ServicesFinanceTitle InsuranceLowContained
FIRST AMERICAN FINANCIAL CORPORATION
bd_bce25de7fe937e5d · schema v1 · pii pii-v1
Full breach record for FIRST AMERICAN FINANCIAL CORPORATION →First American Financial Corporation (NYSE: FAF) filed Amendment No. 2 to a Form 8-K disclosing a material cybersecurity incident under Item 1.05. Upon detecting unauthorized activity on certain IT systems, the company isolated systems from the internet on December 20, 2023, retained experts, worked with law enforcement, and notified regulators. The company believes the incident is contained and business operations have resumed. A material impact on Q4 2023 results of operations is expected, though not on overall financial condition.
SEC clockMateriality determined Dec 22, 2023 → Filed Jan 12, 202421d ✗ SEC 4-day late
⚠ no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/1472787/000095017024004247/faf-20231220.htm
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Jan 12, 2024
- Raw hash
- a7be6ceeb33cfc83a169e310c6c25c8dcc3d332d6051f92e9fd64755690d0695
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- FIRST AMERICAN FINANCIAL CORPORATIONnorm: first american financial
- SEC CIK
- 0001472787
- Domain
- firstam.com
Victim entity
- Name
- FIRST AMERICAN FINANCIAL CORPORATIONnorm: first american financial
- SEC CIK
- 0001472787
- Domain
- firstam.com
- Industry
- Financial ServicesllmNAICS 524127 · Direct Title Insurance Carriers
Incident
- Discovered
- —
- Materiality determined
- Dec 22, 2023
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- —
- Attack vector
- Unknown
- Threat actor
- External
- Regulator citations
- Notified certain regulatory authorities
Compliance
- Compliance flags
- SEC 4-day late · 21d
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status SEC Materiality determined: Dec 22, 2023→ Filed: Jan 12, 202421d cal. 4 business days SEC 4-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.