KeraLink International
bd_fb62060160e9054f · schema v1 · pii pii-v1
Full breach record for KeraLink International →KeraLink International experienced a business email compromise (BEC) incident on April 6, 2017, where a human resources assistant responded to a spoofed email requesting 2016 W-2 forms for current and former employees. The attacker impersonated the CEO. W-2 forms containing names, addresses, Social Security numbers, and wage information were sent to the attacker. One New Hampshire resident was affected. The company notified the FBI and IRS, launched an investigation, and provided credit monitoring services to affected individuals.
J jump to incidentP pin to compareR raw source
Incident timeline
Apr 6, 2017
Begins
Apr 6, 2017
Discovered
Apr 25, 2017
Filed
vs. sector median
10 wks faster
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- Massachusetts State AGbd_d12a48384a4325462017-04-25Verified
Filing propagation · 2 filings · 2 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.