The Maine Office of the Attorney General reported that Southeastern Financial experienced a data breach on April 14, 2022, caused by unauthorized access to an employee's email account, impacting approximately 7,237 individuals. The compromised information may have included personal details such as names, addresses, dates of birth, driver's license numbers, financial account numbers, and Social Security numbers. Southeastern Financial has since offered identity theft protection services through Kroll for one year.
TPRM report: https://www.rankiteo.com/company/southeast-financial
"id": "sou955072625",
"linkid": "southeast-financial",
"type": "Breach",
"date": "4/2022",
"severity": "60",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'customers_affected': 7237,
'industry': 'Finance',
'name': 'Southeastern Financial',
'type': 'Financial Institution'}],
'attack_vector': 'Unauthorized Access',
'data_breach': {'number_of_records_exposed': 7237,
'personally_identifiable_information': ['Names',
'Addresses',
'Dates of Birth',
"Driver's License "
'Numbers',
'Social Security '
'Numbers'],
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Personal Information',
'Financial Information']},
'date_detected': '2022-04-14',
'description': "Unauthorized access to an employee's email account impacting "
'approximately 7,237 individuals.',
'impact': {'data_compromised': ['Names',
'Addresses',
'Dates of Birth',
"Driver's License Numbers",
'Financial Account Numbers',
'Social Security Numbers'],
'identity_theft_risk': 'High'},
'initial_access_broker': {'entry_point': 'Email Account'},
'post_incident_analysis': {'corrective_actions': 'Identity Theft Protection '
'Services',
'root_causes': 'Unauthorized Access to Email '
'Account'},
'references': [{'source': 'Maine Office of the Attorney General'}],
'response': {'remediation_measures': 'Identity Theft Protection Services',
'third_party_assistance': 'Kroll'},
'title': 'Southeastern Financial Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'Email Account Compromise'}