Central Carolina Insurance Agency
bd_ecb4c0429af06474 · schema v1 · pii pii-v1
Full breach record for Central Carolina Insurance Agency →Central Carolina Insurance Agency (CCIA) reported an external system breach (hacking) occurring between Dec 31, 2023 and Mar 20, 2024. CCIA detected suspicious activity on Mar 20, 2024, disconnected network access, and engaged forensic investigators. The FBI was notified. Compromised data included names, SSNs, driver's licenses, financial account numbers, PHI, and employee credentials. 5,013 individuals were affected; 3 were Maine residents. Notifications were mailed on Nov 21, 2024, offering 12 months of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 31, 2023
Begins
Mar 20, 2024
Discovered
Nov 21, 2024
Filed
vs. sector median
+26 wks slower
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Sitebianlianbd_2bcbfaea9f93c2032024-04-09 · +225dVerified
Regulatory filings (4) · sorted by filing gap
- Vermont State AGbd_0c4fbe9be2c1778a2024-11-21Verified
- Massachusetts State AGbd_7b621deb402273332024-11-21Verified by operator
- Indiana State AGbd_e97365ae56e4d7822024-11-21Verified
- New Hampshire State AGbd_a9edb2493a65ebea2024-12-03 · +12dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Pattern: first filing Nov 21 (VT), last Dec 3 (NH) — a 12-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.