HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTCREDENTIALSLowContained
CHARLES SCHWAB & CO., INC.
bd_d10937f215910e8f · schema v1 · pii pii-v1
Full breach record for CHARLES SCHWAB & CO., INC. →Charles Schwab & Co., Inc. notified customers of unusual login activity beginning on or after March 25, 2016. The company believes attackers obtained usernames and passwords from non-Schwab accounts and used automated programs to test them against Schwab accounts (credential stuffing). Affected data includes names, account numbers, positions, and transaction history. Schwab restricted online access for affected accounts and is contacting clients to re-establish access. No indication that holdings were impacted.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_6ba375156c12caa7New Hampshire State AGfiled 2016-05-03Verified
- bd_d2e00d06b003a7cbMontana State AGfiled 2016-05-04(1d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-61626
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 3, 2016
- Raw hash
- 6b1bef610884f178650bedf5749fc11b905c617d3c3cde12bd2d8d797b228e4e
Reporting entity
- Name
- CHARLES SCHWAB & CO., INC.norm: charles schwab
- Domain
- schwab.com
Victim entity
- Name
- CHARLES SCHWAB & CO., INC.norm: charles schwab
- Domain
- schwab.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- May 4, 2016
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNTCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.