Hertz Global Holdings (HTZ) said some of its users' personal data were stolen in a breach involving its Cleo Communications US vendor.
In February, the company confirmed that its data were acquired by an "unauthorized third party" that likely exploited zero-day vulnerabilities within Cleo's platform in October and December last year.
Hertz said "a very small" number of individuals may have had their social security or other government identification numbers, passport information, Medicare or Medicaid ID, or injury-related information tied to vehicle accident claims affected by the event.
The company said it reported the event to law enforcement and is in the process of reporting it to relevant regulators. The company has mandated Kroll to provide two years of identity monitoring or dark web monitoring services to potentially affected individuals at no cost, it said.
Disclaimer: Investing carries risk. This is not financial advice. The above content should not be regarded as an offer, recommendation, or solicitation on acquiring or disposing of any financial products, any associated discussions, comments, or posts by author or other users should not be considered as such either. It is solely for general information purpose only, which does not consider your own investment objectives, financial situations or needs. TTM assumes no responsibility or warranty for the accuracy and completeness of the information, investors should do their own research and may seek professional advice before investing.