CBIZ Details

    Organization Logo

    CBIZ

    Cleveland, Ohio4800 employees • Legal and Professional Services

    United States

    Industry

    Legal and Professional Services

    Security Incidents

    1

    CBIZ, Inc. is a professional services firm that offers a wide range of business services including accounting, tax, insurance, and human resources. CBIZ helps organizations by providing them with the expertise and resources of a national company while maintaining the personalized attention typical of a local firm. This unique business model enables clients to access specialized professionals and deep technical knowledge tailored to meet their individual needs.

    Founded in 1996, CBIZ has grown substantially through strategic acquisitions and organic growth to become a significant player in the ...
    Show more

    Security Incidents

    CBIZ Breach of Jun 2024
    Severity Score
    Significant

    Type

    Zero-Day Exploit

    Summary

    On June 24, 2024, CBIZ Benefits & Insurance Services (CBIZ) discovered unauthorized access to client information stored in specific databases. A threat actor exploited a vulnerability in one of CBIZ’s web pages to steal customer data between June 2 and June 21, 2024. The information compromised included names, contact details, Social Security numbers, dates of birth, dates of death, retiree health information, and welfare plan information, affecting nearly 36,000 individuals.

    Following the discovery, CBIZ conducted an investigation with cybersecurity professionals to determine the extent of t...
    Show more

    Severity

    The cybersecurity incident at CBIZ Benefits & Insurance Services involved a data breach resulting from a web page vulnerability exploit. Sensitive customer information, including Social Security numbers and personal health details, was exposed, affecting approximately 36,000 individuals. Although no systems or services were disrupted, the significant exposure of personal data underscores the need for robust security measures.

    Given the impact on a large number of individuals and the sensitivity of the exposed data, combined with the effective response measures and ongoing monitoring, this inc...
    Show more

    Impact

    The cybersecurity incident at CBIZ Benefits & Insurance Services primarily involved a data breach that resulted from an exploited vulnerability in one of their web pages. The breach led to the exposure of sensitive customer information, including names, contact details, Social Security numbers, dates of birth, dates of death, retiree health information, and welfare plan details. This data breach impacted around 36,000 individuals.

    While no systems or services were taken offline, the breach did result in significant exposure of personal information. CBIZ has since rectified the vulnerability, ...
    Show more