This incident has 0 proposed changes. Know of details that have changed? Submit them Showing Incident 1944 To_xml

SUMMARY

32,000 notified about possibly compromised names, birth dates and Social Security numbers
Records 32,000
Record Types SSN NAA DOB
Breach Type Fraud Se
Data Family Unknown
Source Outside
Organization LexisNexis
Other Affected/Involved Organizations Investigative Professional
Lawsuit? NO/UNKNOWN
Data Recovered? NO/UNKNOWN
Arrest? NO/UNKNOWN
Submitted By: Lyger

TIMELINE

DateEvent
None. Add Data Incident Occurred
None. Add Data Incident Discovered By Organization
2009-05-01 Organization Reports Incident
None. Add Data Organization Mails Notifications
None. Add Data Records Recovered
None. Add Data Lawsuit Filed
None. Add Data Arrest Made

SIMILAR INCIDENTS

recordsdateorganizations
44,309 2006-11-11 Hertz Global Holdings Inc.

MAP OF INCIDENT LOCATION

Address: United States
Have a better address for this incident? Suggest it!

suggest a new reference

REFERENCES

suggest a new attachment

ATTACHMENTS

COSTS SUMMARY

Known Actual Costs

No known costs for this incident.

Estimated Costs

Ponemon Institute Direct Costs Estimate 1 $1,920,000.00
  1. Note that these estimates are based on the Ponemon Institute's 2009 direct costs figures from their 2009 Annual Study: Cost of a Data Breach. We multiply $60.00 by the number of records to obtain this figure. Keep in mind that depending on the breach, the direct costs are not always suffered by the breached organizations. In the case of credit card number breaches, the direct costs can often be suffered by banks and card issuers. Also note that this is only an estimate.

PRIMARY SOURCES

Primary Source ID: 1755

add details to this primary source Description
New Hampshire breach notification: LexisNexis - personal information about customer accounts stolen from mailbox near company. USPIS is investigating the case. 156 NH residents exposed.
FilenameSourceResearcher Incident IDs
LexisNexis4.pdfNew Hampshire Consumer Protection & Antitrust Bureaukirniki 1944
RecordsFile DateUploadedUpdated
156 2009-05-01 2009-05-11 01 Jun 07:09
Excerpt
1755

LmoA K. CLARK, Eso. Dmscron 8. Samoa Conponrxrs Couussn. LExnsNEx|s® Rnsx & lNFoRmAnou ANALYTICS Gnoup May l, 2009 The Honorable Kelly A. Ayotte Attorney General of New Hampshire 33 Capitol Street Co...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 2364

add details to this primary source Description
Maine breach notification: LexisNexis - personal information about customer accounts stolen from mailbox near company. USPIS is investigating the case. 231 ME residents effected.
FilenameSourceResearcher Incident IDs
20090501_choicepoint_lexisnexis_ME.pdfMaine Attorney Generald2d 1944
RecordsFile DateUploadedUpdated
231 2009-05-01 2009-12-06 05 Jun 12:44
Excerpt
2364

LINDA K. CLARK, Esc:. W Dmecroa & Semen Connemara Couuseo. LEx1sNEx|s® Rnsx & lm=oRmm¤N Amtvtncs Gaoua QC-"2°€ 3 ·r— ,~ 5 ._ __A_ May 1, 2009 ‘ °’ H;’¥?»’ V The Honorable Janet T. Mills...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 2001

add details to this primary source Description
Maryland breach notification: LexisNexis - personal information about customer accounts stolen from mailbox near company. USPIS is investigating the case. 896 MD residents effected.
FilenameSourceResearcher Incident IDs
ITU-172560.pdfMaryland Attorney Generalkirniki 1944
RecordsFile DateUploadedUpdated
896 2009-05-01 2009-08-08 15 Aug 14:14
Excerpt
2001

if ` W—"_”`_*—W_`Wi—W"——”“’*_“`_—*-W—_WWWi"”"i`ST`~‘——’W—v“ #—”'—_—#A"“_*W LINDA K. CLARK, ESQ. GF: I r D1REcroR & SEN1oR CoRPoRATE COUNSEL` ‘ "“ ‘ »7*"‘“‘ °‘ ‘ · . 1 LEx1sNEx|s® Rnsx & IN1=oRMAT1o...

Click here for the Full Details | Download Raw PDF

COMMENTS

by Alina_Johnson [Apprentice Investigator] on 2009-05-03 (about 1 year ago)

This is not the first time this company has compromised its customer data; it happened again last in 2005 (March 9, 2005). This time, however, the USPS has launched a criminal investigation into what they believe is a large credit card fraud scheme. ~Alina

by Alina_Johnson [Apprentice Investigator] on 2009-05-03 (about 1 year ago)

Also, this admission was admitted almost two years after the occurrences: breach is suspected to have taken place between June 14 - Oct. 10, 2007. There has been no data recovered, and no arrests have been made; only (letter) notifications have taken place to suspected customers.

New Comment

simple_captcha.jpg
(type the code from the image)

Sponsored By: Credant_200x51 Tenable Pgp_logo Zecurion
Permission is granted to use this database in non-profit works and research. Use of the DataLossDB, and its exports, RSS feeds, reports, or other materials produced on this site by the Open Security Foundation for commercial interests requires authorization and licensing arrangements. For more information, please e-mail curators@datalossdb.org with a brief summary of how you would like to use this information; product, service, research, etc.
© 2005 - 2010, Open Security Foundation, All Rights Reserved.