COREBRIDGE FINANCIAL, INC.
bd_fcf6e5ee79223a01 · schema v1 · pii pii-v1
Full breach record for COREBRIDGE FINANCIAL, INC. →2 incidents on fileCorebridge Financial, Inc. disclosed that a third-party vendor experienced a security incident targeting a zero-day vulnerability in the MOVEit Transfer Application. As a result, an unauthorized party obtained personal information about a significant number of Corebridge customers, including in some instances social security numbers and policy numbers. The investigation is ongoing, and the company is offering credit monitoring services. The company does not currently believe the incident will have a material adverse effect on its business.
J jump to incidentP pin to compareR raw source
Incident timeline
Jun 16, 2023
Discovered
Jun 26, 2023
Filed
vs. sector median
8 wks faster
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- California State AGbd_50e7b9fa8cff82082023-07-27 · +31dVerified by operator
- Oregon State AGbd_52ef38ab67f176b32023-07-27 · +31dVerified by operator
- Indiana State AGbd_6e980d6f79d7b6e82023-07-27 · +31dVerified by operator
- Montana State AGbd_f906eb0512385ff42023-07-27 · +31dVerified by operator
Show 1 more filing ↓Show fewer ↑up to 31d gap
- Massachusetts State AGbd_fd7c5113f7fff7052023-07-27 · +31dVerified
Filing propagation · 6 filings · 5 states
View merged incident ↗Pattern: first filing Jun 26, last Jul 27 (MA) — a 31-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.