The Washington State Office of the Attorney General reported that the National Inventors Hall of Fame experienced a phishing cyberattack, where one employee email account was accessed by an unauthorized individual between January 27, 2021 and February 3, 2021, impacting approximately 685 Washington residents. The breached account contained residents' personal information including names, Social Security numbers, driver's license numbers, dates of birth, and financial account information. NIHF is offering affected individuals a complimentary one-year credit monitoring service as part of their response efforts.
TPRM report: https://www.rankiteo.com/company/nihf
"id": "nih557072825",
"linkid": "nihf",
"type": "Cyber Attack",
"date": "1/2021",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 685,
'industry': 'Education/Non-profit',
'location': 'Washington',
'name': 'National Inventors Hall of Fame',
'type': 'Organization'}],
'attack_vector': 'Email',
'data_breach': {'number_of_records_exposed': 685,
'personally_identifiable_information': ['Names',
'Social Security '
'numbers',
"Driver's license "
'numbers',
'Dates of birth'],
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Personal Information',
'Financial Information']},
'date_detected': '2021-01-27',
'date_resolved': '2021-02-03',
'description': 'The National Inventors Hall of Fame experienced a phishing '
'cyberattack, where one employee email account was accessed by '
'an unauthorized individual between January 27, 2021 and '
'February 3, 2021, impacting approximately 685 Washington '
"residents. The breached account contained residents' personal "
'information including names, Social Security numbers, '
"driver's license numbers, dates of birth, and financial "
'account information.',
'impact': {'data_compromised': ['Names',
'Social Security numbers',
"Driver's license numbers",
'Dates of birth',
'Financial account information'],
'identity_theft_risk': 'High',
'payment_information_risk': 'High'},
'initial_access_broker': {'entry_point': 'Email'},
'motivation': 'Data Theft',
'references': [{'source': 'Washington State Office of the Attorney General'}],
'response': {'communication_strategy': 'Offering complimentary one-year '
'credit monitoring service'},
'threat_actor': 'Unauthorized Individual',
'title': 'Phishing Attack on National Inventors Hall of Fame',
'type': 'Phishing',
'vulnerability_exploited': 'Human'}