AccidentalMisdeliveryData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENTMediumContained
IndyMac Resources, Inc.
bd_d995b9dae2f6b42a · schema v1 · pii pii-v1
Full breach record for IndyMac Resources, Inc. →IndyMac Resources, Inc. disclosed that PII of former employees was exposed on a public web server between 2007 and 2011. A contractor's employee placed the data, which included names, SSNs, and birth dates, on the server. The data was subsequently removed. The company offered two years of free credit monitoring via Equifax and established a hotline for affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-22262
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 2, 2012
- Raw hash
- 5aa9f96787e42f7813a086d35ebf2ad95bf3f59c8c996c50d06a6b0303075be2
Reporting entity
- Name
- IndyMac Resources, Inc.norm: indymac resources
Victim entity
- Name
- IndyMac Resources, Inc.norm: indymac resources
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- Partner
- Regulator citations
- Submitted Breach Notification to California Office of the Attorney General
- Initial access
- trusted_relationship
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.