On April 27, 2024, the California Office of the Attorney General reported a data breach involving J.P. Morgan. The breach, which occurred between August 26, 2021, and February 23, 2024, was due to a software issue that allowed unauthorized access to plan participant information. The compromised data included names, addresses, Social Security numbers, and banking details for certain users. The exact number of individuals affected is unknown.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-584558
TPRM report: https://www.rankiteo.com/company/jpmorgan
"id": "jpm221072725",
"linkid": "jpmorgan",
"type": "Breach",
"date": "8/2021",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Finance',
'name': 'J.P. Morgan',
'type': 'Financial Institution'}],
'attack_vector': 'Software Vulnerability',
'data_breach': {'personally_identifiable_information': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Names',
'Addresses',
'Social Security numbers',
'Banking details']},
'date_detected': '2024-04-27',
'date_publicly_disclosed': '2024-04-27',
'description': 'A software issue allowed unauthorized access to plan '
'participant information, including names, addresses, Social '
'Security numbers, and banking details for certain users.',
'impact': {'data_compromised': ['Names',
'Addresses',
'Social Security numbers',
'Banking details']},
'references': [{'date_accessed': '2024-04-27',
'source': 'California Office of the Attorney General'}],
'title': 'J.P. Morgan Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'Unauthorized Access'}