Social EngineeringPhishingCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
UNUM GROUP
bd_fbc2d332fe7f8598 · schema v1 · pii pii-v1
Full breach record for UNUM GROUP →Unum Group notified Delaware residents of a cybersecurity incident where an unknown actor accessed a Unum employee's email account between October 28 and November 15, 2021. Unum discovered the access on November 23, 2021. The incident involved the impermissible access of employee email, potentially exposing customer personal information. Unum secured the account, enhanced security protocols, and provided 24 months of credit monitoring via Experian.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2022/02/Unum-Individual-Notification-Template.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 10, 2014
- Raw hash
- fafc6feec4a477b15f1c176ad3b4b9cad62ca24f75e65b7fb7cb6e0ee04e64c8
Reporting entity
- Name
- UNUM GROUPnorm: unum group
Victim entity
- Name
- UNUM GROUPnorm: unum group
Incident
- Discovered
- Nov 23, 2021
- Materiality determined
- —
- Notification sent
- Jan 28, 2022
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- External
- Initial access
- phishing_link
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.