Noblr Reciprocal Exchange
ent_019ed54ad74b1be035ba507f149c2a06
Disclosures
3
State AG · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
97,633
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Noblr Reciprocal Exchange
- Normalized
- noblr reciprocal exchange— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300U3W2EDH87MM992
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
- Corporate parent
- United Services Automobile Association— per GLEIF relationship records
Disclosure history (3)newest first
- New Hampshire State AGas victim2021-05-10
Noblr Reciprocal Exchange notified the NH Attorney General of a data security event involving unauthorized access to consumer personal information via its public-facing web quotes feature. On January 21, 2021, Noblr detected unusual quote activity and bot traffic intended to scrape driver's license numbers inadvertently included in unredacted page source code. The incident affected at least 65 New Hampshire residents. Noblr masked driver's license numbers and other PII in source code and application pages, blocked suspicious IPs, and adjusted rate limits. Free identity theft protection services were offered.
- Massachusetts State AGas victim2021-05-07
Noblr Reciprocal Exchange reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-05-07. 419 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2021-05-07
Noblr Reciprocal Exchange experienced an external system breach (hacking) on January 21, 2021, discovered on January 27, 2021. The incident compromised the names and driver's license numbers of 97,633 individuals, including 68 Maine residents. The entity provided written notification on May 14, 2021, and offered one year of Experian IdentityWorks identity protection services.