HackingFinancial ServicesFinanceStolen CredentialsAbuse Of FunctionalityCustomer Data InvolvedDelayed DiscoveryMulti-Stage ChainPIIIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
PRUCO LIFE INSURANCE COMPANY OF NEW JERSEY
bd_d4ede04488c6fff8 · schema v1 · pii pii-v1
Full breach record for PRUCO LIFE INSURANCE COMPANY OF NEW JERSEY →Between June and November 2024, an unauthorized individual fraudulently accessed a Prudential website used by third-party Broker-Dealer financial professionals, using information from a non-Prudential source to impersonate financial professionals. On December 10, 2024, investigation confirmed that names, partial SSNs, email addresses, dates of birth, annuity details, and account numbers of affected individuals could have been viewed. Two Maryland residents were impacted and notified on January 3, 2025.
Maryland clock✗ MD AG >90d18 months discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_b9ed1599c8d81030New Hampshire State AGfiled 2025-01-03(502d gap)Candidate
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376118.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 19, 2026
- Raw hash
- b9f3f4517461462f545b33ac756a8b0396d361407e389701e64f48f51060090e
Reporting entity
- Name
- PRUCO LIFE INSURANCE COMPANY OF NEW JERSEYnorm: pruco life insurance company of new jersey
- Domain
- prudential.com
Victim entity
- Name
- PRUCO LIFE INSURANCE COMPANY OF NEW JERSEYnorm: pruco life insurance company of new jersey
- Domain
- prudential.com
- Industry
- Financial Services and Insurance
- Industry
- Financial Servicesllm
Incident
- Discovered
- Dec 10, 2024
- Materiality determined
- —
- Notification sent
- Jan 3, 2025
- Affected individuals
- 2
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1566 Phishing
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified Maryland Attorney General's Office of the data security incident
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 18 months(525 days from discovery to filing)
- Compliance flags
- MD AG >90d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.