DisclosureLens
AccidentalFinancial ServicesFinanceMisdeliveryData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedDelayed DiscoveryIdentity (basic)Government IDEmploymentMediumContained

IndyMac Resources, Inc.

bd_d995b9dae2f6b42a · schema v1 · pii pii-v1

Severity

Medium

Discovered

Filed

Feb 2, 2012

To disclose

Affected

Not disclosed

Linked

2 filings

Confidence

64%
Full breach record for IndyMac Resources, Inc.

IndyMac Resources, Inc. disclosed that PII of former employees was exposed on a public web server between 2007 and 2011. A contractor's employee placed the data, which included names, SSNs, and birth dates, on the server. The data was subsequently removed. The company offered two years of free credit monitoring via Equifax and established a hotline for affected individuals.

Incident timeline

Jan 1, 2007

Begins

Feb 2, 2012

Filed

This filing is one of 2 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings · 2 states

View merged incident ↗
Massachusetts State AGJan 30 · first
California State AG+3d · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.