Social EngineeringFinancial ServicesFinancePhishingStolen CredentialsCapture App DataMulti-Stage ChainTargetedCustomer Data InvolvedEmployee Data InvolvedWire FraudIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSIDENTITY_BASICMediumContained
Fidelity National Financial
bd_bd30108080352613 · schema v1 · pii pii-v1
Full breach record for Fidelity National Financial →In April 2014, Fidelity National Financial (FNF) employees were targeted by a phishing attack that led to attackers obtaining username and password credentials for a small number of employee email accounts hosted by a third-party provider. Attackers logged into accounts intermittently April 14–16, 2014. Potentially exposed data includes SSN, bank account numbers, credit/debit card numbers, and driver's license numbers. The apparent purpose was to redirect scheduled money transfers. FNF notified federal law enforcement and engaged a third-party security expert.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-47112
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 24, 2014
- Raw hash
- 084628969870244e98544bb394c30e36b51a783cdf262dbae1a371b59b3149c5
Reporting entity
- Name
- Fidelity National Financialnorm: fidelity national financial
- Domain
- fnf.com
Victim entity
- Name
- Fidelity National Financialnorm: fidelity national financial
- Domain
- fnf.com
- Industry
- Financial Servicesllm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Sep 23, 2014
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSIDENTITY_BASIC
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566 PhishingT1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified federal law enforcement
- Initial access
- phishing_attachment
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.