FEDERALItem 8.01 · voluntaryHackingStolen CredentialsData ExfiltratedCustomer Data InvolvedPIIIDENTITY_BASICHighActive
MR. COOPER GROUP INC.
bd_eb26991231ea6888 · schema v1 · pii pii-v1
Full breach record for MR. COOPER GROUP INC. →Mr. Cooper Group Inc. filed an amended 8-K disclosing a cybersecurity incident discovered on October 31, 2023, where an unauthorized third party accessed technology systems. Personal information of substantially all current and former customers was obtained. The company is offering two years of complimentary identity protection and credit monitoring. Forensic review and litigation are ongoing. Estimated vendor expenses related to the incident are updated to $25 million.
SEC clockMateriality determined Nov 2, 2023 → Filed Dec 15, 202343d ✗ SEC 4-day late6 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_834e3ffcf5af1c48Hawaii State AGfiled 2023-12-05(10d gap)Verified
- bd_c2d404959f98c389SEC 8-Kfiled 2023-11-09(36d gap)Verified
- bd_d32ed619bafc52c5SEC 8-Kfiled 2023-11-02(43d gap)Candidate
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/933136/000093313623000109/
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Dec 15, 2023
- Raw hash
- 308e38fbc7a3907d62fc2e31c3db12fd0b19e14483265bfe6a839117ccde7beb
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- MR. COOPER GROUP INC.norm: mr cooper
- SEC CIK
- 0000933136
- Industry
- Financial Services
Victim entity
- Name
- MR. COOPER GROUP INC.norm: mr cooper
- SEC CIK
- 0000933136
- Industry
- Financial Services
Incident
- Discovered
- Oct 31, 2023
- Materiality determined
- Nov 2, 2023
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated Collection
- Threat actor
- External
- Regulator citations
- Engagement with regulators
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 6 weeks(45 days from discovery to filing)
- Compliance flags
- SEC 4-day late · 43d
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
- Clock breakdown
Statute Window Elapsed Threshold Status SEC Materiality determined: Nov 2, 2023→ Filed: Dec 15, 202343d cal. 4 business days SEC 4-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.