MalwareRansomwareData ExfiltratedCustomer Data InvolvedDelayed DiscoveryPIIIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
NATIONAL WESTERN LIFE INSURANCE COMPANY
bd_df6f1c04fd2bb992 · schema v1 · pii pii-v1
Full breach record for NATIONAL WESTERN LIFE INSURANCE COMPANY →National Western Life Insurance Company reported a malware incident discovered on August 15, 2020, affecting systems between August 7 and 10, 2020. The breach involved unauthorized access to personal information, including names and policy details, potentially impacting individuals across multiple states. The company engaged third-party investigators, notified law enforcement, and offered credit monitoring services to affected individuals.
Leak gap clock⏱ Leak >90d23 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
A leak claim by revil about this victim predates this filing by 177 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_27b9bce48c7bd735Delaware State AGfiled 2021-01-25Verified
- bd_0474e4e1745534fcHawaii State AGfiled 2021-01-14(11d gap)Verified
- bd_d14332d9967bb20eSouth Carolina State AGfiled 2021-01-14(11d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-537421
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 25, 2021
- Raw hash
- 54855d9a66bd886ace6d68e43b2cd64f54ff2b709a6294792091585cc08f245d
Reporting entity
- Name
- NATIONAL WESTERN LIFE INSURANCE COMPANYnorm: national western life insurance
- Domain
- nationalwesternlife.com
Victim entity
- Name
- NATIONAL WESTERN LIFE INSURANCE COMPANYnorm: national western life insurance
- Domain
- nationalwesternlife.com
Incident
- Discovered
- Aug 15, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 23 weeks(163 days from discovery to filing)
- Compliance flags
- Leak >90d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.