Clustered 6 filings across 5 jurisdictions · filing window Mar 29, 2024 → May 24, 2024. View entity profile → Other incidents for this victim →
incident inc_1dd9babb051f4184 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
Government ID · Identity (basic)
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
CA DE ME OR WA
all State AG
per-filing reported counts
State AGs report only their own residents; bars show per-filing counts.
Earliest sighting first · deep chronology in Litigation Timeline
Feb 4, 2024
When the intrusion reportedly occurred, per the linked filings
Feb 5, 2024
Reported by CALIFORNIA AG, DELAWARE AG, MAINE AG, WASHINGTON AG, OREGON AG filings
Prudential Insurance Company of America reported a data breach to the Oregon Attorney General. The breach was reported on 2024-05-24. The breach occurred during 2/4/2024 - 2/14/2024. The breach was discovered on 2/5/2024. Notice was sent on 3/29/2024.
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
Prudential Insurance Company of America detected unauthorized third-party access to its systems on February 5, 2024. The investigation revealed that an attacker gained access on February 4, 2024, and exfiltrated a small percentage of personal information, including names, addresses, and other data elements. The company contained the breach, engaged external cybersecurity experts, and notified law enforcement. Affected individuals are offered 24 months of complimentary credit monitoring.
Prudential Insurance Company of America reported a cybersecurity incident to the Maine Attorney General. The breach occurred on February 4, 2024, and was discovered on May 2, 2024. The incident involved an external system breach via social engineering (phishing), resulting in the unauthorized access of customer data. Approximately 36,545 individuals were affected, including 201 Maine residents. The compromised data included names and driver's license numbers. Prudential provided written notification and offered 24 months of identity theft and credit monitoring services through Kroll.
Affected (this filing): 36,545
Prudential Insurance Company of America notified Delaware AG of a cybersecurity incident detected on February 5, 2024. An unauthorized third party accessed company systems on February 4, 2024, and exfiltrated a small percentage of personal information, including names, addresses, and government identifiers. Prudential engaged external experts, notified law enforcement, and provided 24 months of complimentary credit monitoring. The incident is contained, and no fraud is currently known.
Prudential Insurance Company of America filed an amended data breach notice with the Maine Attorney General on March 29, 2024. The breach occurred on February 4, 2024, and was discovered on February 5, 2024. The incident involved an external system breach via social engineering (phishing). Approximately 36,545 individuals were affected, including 201 Maine residents. The data compromised included names and driver's license numbers. Prudential offered 24 months of identity theft and credit monitoring services through Kroll to affected individuals.
Affected (this filing): 36,545
Prudential Insurance Company of America, a finance sector entity reported a phishing incident to the Washington Attorney General. The organization became aware of the incident on 2024-02-05 and filed notice on 2024-04-23. 872 Washington residents were affected. 78 days elapsed between awareness and notification. 1 days to identify the breach. 9 days to contain the breach.
Affected (this filing): 872