HackingStolen CredentialsData ExfiltratedIDENTITY_BASICLowContained
GAIN CAPITAL GROUP, LLC
bd_d6091f69fbfc0168 · schema v1 · pii pii-v1
Full breach record for GAIN CAPITAL GROUP, LLC →GAIN Capital Group, LLC reported a data breach affecting current and former customers. Unauthorized access occurred between April 14 and 18, 2020, discovered on April 15, 2020. The incident involved suspicious login activity leading to server access. Customer names and additional personal data were potentially accessed, but Social Security numbers were not involved. GAIN engaged a cybersecurity firm, secured and took servers offline, and implemented enhanced monitoring.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_bbbf4728db5d0f54Montana State AGfiled 2020-06-22Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-191230
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 22, 2020
- Raw hash
- 0152ec6705f75a278a1a2bb627bef4febbba6907d705fb60e314819768ef5a52
Reporting entity
- Name
- GAIN CAPITAL GROUP, LLCnorm: gain capital
Victim entity
- Name
- GAIN CAPITAL GROUP, LLCnorm: gain capital
Incident
- Discovered
- Apr 15, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 10 weeks(68 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.