MalwareRansomwareData EncryptedCustomer Data InvolvedPIIIDENTITY_BASICLowContained
AVIENT CORPORATION
bd_f69c86604472d84a · schema v1 · pii pii-v1
Full breach record for AVIENT CORPORATION →Avient Corporation reported a cyber security incident occurring on April 9, 2023, involving disruption to IT systems and workstations, consistent with a ransomware attack. The company determined on July 6, 2023, that personal information (PII) was stored on impacted servers. Avient engaged forensic firms, restricted system access, reset passwords, implemented MFA, and offered 24 months of Kroll identity monitoring to affected individuals.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_bb9b927201df4703Vermont State AGfiled 2023-08-22(1d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/avient-corporation-20230821.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 21, 2023
- Raw hash
- a304ea3fa1b9fca4692f9c47885923404c2dc1b52cc87bfd0631e6dcc9dc409e
Reporting entity
- Name
- AVIENT CORPORATIONnorm: avient
Victim entity
- Name
- AVIENT CORPORATIONnorm: avient
Incident
- Discovered
- Apr 9, 2023
- Materiality determined
- Jul 6, 2023
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 19 weeks(134 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.