On July 10, 2017, the California Office of the Attorney General reported a data breach involving Movement Mortgage, LLC. The breach occurred between August 1, 2016, and October 1, 2016, due to unauthorized access stemming from sophisticated phishing attacks on company email accounts. This potentially compromised personal information including names, Social Security numbers, and payment card details of individuals affected, although the specific number of affected individuals is unknown.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-100185
TPRM report: https://www.rankiteo.com/company/movementmortgage
"id": "mov509072825",
"linkid": "movementmortgage",
"type": "Breach",
"date": "8/2016",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Financial Services',
'name': 'Movement Mortgage, LLC',
'type': 'Company'}],
'attack_vector': 'Phishing',
'data_breach': {'personally_identifiable_information': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Names',
'Social Security numbers',
'Payment card details']},
'date_detected': '2017-07-10',
'date_publicly_disclosed': '2017-07-10',
'description': 'Unauthorized access to company email accounts through '
'sophisticated phishing attacks, potentially compromising '
'personal information including names, Social Security '
'numbers, and payment card details.',
'impact': {'data_compromised': ['Names',
'Social Security numbers',
'Payment card details']},
'initial_access_broker': {'entry_point': 'Email Accounts'},
'post_incident_analysis': {'root_causes': 'Phishing attacks'},
'references': [{'date_accessed': '2017-07-10',
'source': 'California Office of the Attorney General'}],
'title': 'Movement Mortgage Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'Email Accounts'}