Ransomware victim disclosure
← All victimsCPA Mutual Insurance Company
Claimed by Avoslocker · listed 3 years ago
Status timeline
- Listed
Dec 26, 2022
- Data leaked
At a glance
- Group
- Avoslocker
- Status
- Data leaked
- Country
- United States
- Sector
- Finance
- Listed on leak site
- Dec 26, 2022
About the victim
AI dossier — public-source company profileCPA Mutual Insurance Company provides professional liability (errors & omissions) insurance solutions specifically tailored to accounting firms and CPAs in the United States. Its mission is to address the professional liability needs of accountants while helping member firms manage and prevent risks. The company positions itself as a member-focused insurer striving to exceed expectations in risk management.
- Industry
- Professional Liability Insurance for Accountants
Attack summary
Severity: high — Data has been published (disclosed status: data_published) and the sample includes actual insurance policy documents, which likely contain sensitive financial and business PII belonging to CPA firms and their clients. Exposure of cyber insurance policy details is particularly sensitive as it reveals coverage limits and security posture of insured firms.AvosLocker claims to have exfiltrated data from CPA Mutual Insurance Company, with the leak post indicating that at least one cyber insurance policy document has been published as a sample proof of the breach.
Data the group says was taken
AI dossier — extracted from the leak post- Cyber insurance policy documents
- Professional liability policy records
- Client/member firm information
The group's post references roughly 1 proof file.
What the group claims
Cyber Insurance policy leaked in sample. At CPA Mutual, our mission is to provide a quality and lasting solution to the professional liability needs of accountants. We bring added value to our member firms by continually striving to exceed their expectations and helping them manage and prevent risks.
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
