HackingEmployee Data InvolvedData ExfiltratedEMPLOYMENTIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTCREDENTIALSHEALTH_BASICMediumContained
PULAU Corporation
bd_e2bf2611f2f219c7 · schema v1 · pii pii-v1
Full breach record for PULAU Corporation →PULAU Corporation notified individuals of unauthorized access to its network between June 11 and June 29, 2020. An external party acquired employment-related records containing personal information including names, contact info, dates of birth, government-issued IDs (SSN, passport, driver's license), financial account info, online credentials, and health-related information. The company engaged security experts, coordinated with law enforcement, and secured systems. Affected individuals were offered two years of identity restoration and credit monitoring.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_647fb8ff9a8c914bMontana State AGfiled 2020-08-28Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-193554
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 28, 2020
- Raw hash
- 0a24199b8a198714985a1f47625c52f10364c2219be4fd7234ddc58b3cbebcf6
Reporting entity
- Name
- PULAU Corporationnorm: pulau
Victim entity
- Name
- PULAU Corporationnorm: pulau
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Aug 28, 2020
- Affected individuals
- Not disclosed
- Data types
- EMPLOYMENTIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTCREDENTIALSHEALTH_BASIC
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Coordinated with law enforcement authorities
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.