HackingStolen CredentialsCustomer Data InvolvedCREDENTIALSLowContained
State Farm Mutual Automobile Insurance Company
bd_fd60423ca5e49a74 · schema v1 · pii pii-v1
Full breach record for State Farm Mutual Automobile Insurance Company →State Farm Mutual Automobile Insurance Company reported that a bad actor used a list of user IDs and passwords obtained from another source to attempt access to State Farm online accounts. The actor possessed valid credentials for affected accounts. No sensitive personal information was viewable, and no fraudulent activity occurred. State Farm reset affected passwords.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-149396
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 1, 2019
- Raw hash
- f15d8686d01bccb5bc80ff5ed13647fe1cc9d959fe985902722d7a8789232a02
Reporting entity
- Name
- State Farm Mutual Automobile Insurance Companynorm: state farm mutual automobile insurance
Victim entity
- Name
- State Farm Mutual Automobile Insurance Companynorm: state farm mutual automobile insurance
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Aug 1, 2019
- Affected individuals
- Not disclosed
- Data types
- CREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.