Summary
- Environment: Internal analytics tool and connected databases
- Operational impact: Pathpoint reported no service interruption
- Financial impact: No incident cost established in the reviewed evidence
- Record status: Developing record. Reviewed October 7, 2026; updated as evidence emerges.
What happened
Impact
Accessed records included contact, policy, communications and billing information, plus some Social Security and tax identifiers. [1]
Timeline
Discovery and containment
Pathpoint identified and contained the incident.
[1]Public notice
Pathpoint published its incident notice.
[1]Briefing updated
This briefing was last reviewed and updated on October 7, 2026.
Threat Group & Attack Vector
Pathpoint attributed access to a previously unknown third-party software flaw; downloading remained possible rather than confirmed. [1]
Actors
- No threat actor group has been identified in the reviewed public evidence.
TTPs
- No specific MITRE ATT&CK technique is currently mapped for this case.
