HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
LoanCare, LLC
bd_dd5b86a0d84e81b8 · schema v1 · pii pii-v1
Full breach record for LoanCare, LLC →LoanCare, LLC, a mortgage loan subservicer for Fidelity National Financial, Inc., disclosed a cybersecurity incident occurring on or about November 19, 2023. An unauthorized third party gained access to FNF's IT network and exfiltrated data including names, addresses, Social Security Numbers, and loan numbers. The incident has been contained. LoanCare notified law enforcement, engaged third-party experts, and provided 24 months of complimentary identity monitoring services through Kroll to affected borrowers.
This filing is one of 8 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- bd_0d25ed3880248346Oregon State AGfiled 2023-12-22(21d gap)Verified
- bd_641ad1b56e1932e3California State AGfiled 2023-12-22(21d gap)Verified
- bd_a83ab9d0b495249eMaine State AGfiled 2023-12-22(21d gap)Verified
- bd_a8f2a740e499e5caWashington State AGfiled 2023-12-22(21d gap)Verified
Show 3 more filings ↓Show fewer ↑up to 23d gap
- bd_578af16463781048Montana State AGfiled 2023-12-21(22d gap)Verified
- bd_7fabed71d6cd01adDelaware State AGfiled 2023-12-20(23d gap)Verified
- bd_d04aec468414a915Delaware State AGfiled 2023-12-20(23d gap)Candidate
Source provenance
- Source URL
- https://consumer.sc.gov/sites/consumer/files/Documents/Security%20Breach%20Notices/2024/LoanCare%20Cybersecurity%20Incident%20Borrower%20Notice%20template.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 12, 2024
- Raw hash
- 872e963f35f2f8514d348c27479bcaab6cd7f9d5d1a11ff923668ca9138861ad
Reporting entity
- Name
- LoanCare, LLCnorm: loancare
- Domain
- loancare.com
Victim entity
- Name
- LoanCare, LLCnorm: loancare
- Domain
- loancare.com
Incident
- Discovered
- Nov 19, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- notified certain law enforcement and governmental authorities
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 8 weeks(54 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.