On February 20, 2024, On Q Financial was alerted by ConnectWise, a provider of IT management software, about a vulnerability in their ScreenConnect product. This software was utilized by On Q Financial for remote computer access within their network. Prompt actions were taken to patch and upgrade the application, and a thorough investigation was initiated. Despite these efforts, suspicious activities were detected through the ScreenConnect application, leading to a deeper forensic investigation. By March 14, 2024, it was confirmed that an unauthorized party had exploited this vulnerability to access and extract personal information from the On Q Financial network. Although there is no evidence of misuse of the data as of now, the breach has potentially impacted numerous clients.
In response to the breach, On Q Financial acted swiftly by patching the identified vulnerability and securing their network. The incident was reported to the FBI, and cooperation has been extended for any subsequent investigations. To prevent future incidents, additional security measures have been implemented to enhance the robustness of their network environment. Furthermore, On Q Financial has arranged for affected clients to access complimentary credit monitoring services through IdentityForce, a TransUnion company specializing in fraud assistance and remediation services. These services are designed to alert clients to any changes in their credit files over the next 12 months.
If you believe your information might have been compromised in this breach, it is crucial to stay vigilant and proactive. Here are some steps you can take:
On Q Financial, a prominent entity in the financial services industry, is known for simplifying the mortgage process. They pride themselves on providing expert advice and high-quality service, ensuring a dependable and straightforward experience for their clients. More information about On Q Financial can be found on their official website.
For more detailed information on how to protect your personal information and for additional resources, please refer to the official disclosures on the data breach provided by the Maine Attorney General, the Texas Attorney General, the Massachusetts Attorney General, and the California Attorney General.