HackingStolen CredentialsCapture App DataData ExfiltratedEmployee Data InvolvedCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTPHIHEALTH_BASICMediumContained
Steel Partners Holdings L.P.
bd_d56f926d012676aa · schema v1 · pii pii-v1
Full breach record for Steel Partners Holdings L.P. →Steel Partners Holdings L.P. discovered unauthorized access to one employee email account. The incident occurred between April 18–29, 2020, with a determination of personal information involvement made on May 29, 2020. The mailbox was downloaded by the unauthorized actor. Affected data included names, SSNs, dates of birth, and health information related to disability or workers compensation claims. The letter was sent November 18, 2020.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-196400
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 23, 2020
- Raw hash
- c0e71ddc9d5fb178f66dde9bec6dab099d1172116ac57f905f7ebb1db603d8c9
Reporting entity
- Name
- Steel Partners Holdings L.P.norm: steel partners
Victim entity
- Name
- Steel Partners Holdings L.P.norm: steel partners
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Nov 18, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTPHIHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.