Extracted from this filing and checked against the source text.
Cybersecurity Incidents
SEC 8-K Item 1.05
confidence 0.9
PRUDENTIAL FINANCIAL INC disclosed a cybersecurity incident: A threat actor gained unauthorized access to certain systems; accessed administrative and user data from certain IT systems and a small percentage of user accounts of employees and contractors. Impact: The incident has not had a material impact on the Company’s operations, and the Company has not determined the incident is reasonably likely to materially impact the Company’s financial condition or results of operations. Company determined it not material. Discovered 2024-02-05.
- Nature
- A threat actor gained unauthorized access to certain systems; accessed administrative and user data from certain IT systems and a small percentage of user accounts of employees and contractors.
- Impact
- The incident has not had a material impact on the Company’s operations, and the Company has not determined the incident is reasonably likely to materially impact the Company’s financial condition or results of operations.
- Materiality
- not material
- Discovery
- 2024-02-05
Exact text from the filing
On February 5, 2024, Prudential Financial, Inc. (the “Company” or “we”) detected that, beginning February 4, 2024, a threat actor had gained unauthorized access to certain of our systems. With assistance from external cybersecurity experts, we immediately activated our cybersecurity incident response process to investigate, contain, and remediate the incident. As of the date of this Report, we believe that the threat actor, who we suspect to be a cybercrime group, accessed Company administrative and user data from certain information technology systems and a small percentage of Company user accounts associated with employees and contractors. We continue to investigate the extent of the incident, including whether the threat actor accessed any additional information or systems, to determine the impact of the incident. On the basis of the investigation to date, we do not have any evidence that the threat actor has taken customer or client data. We have reported this matter to relevant la
View on SEC.gov