Case file index
| Case | Subject | Year | Disclosed cost | Initial vector |
|---|---|---|---|---|
| CF-001 | Change Healthcare | 2024 | $872M+ | Compromised credentials at Citrix portal (no MFA) |
| CF-002 | MGM Resorts International | 2023 | $100M | Vishing helpdesk impersonation |
| CF-003 | Clorox | 2023 | $49M | Phishing-driven account takeover |
| CF-004 | Caesars Entertainment | 2023 | $15M (paid) | Vishing on third-party IT vendor |
| CF-005 | Ubiquiti Networks | 2021 | $46.7M | Spear-phish + insider escalation |
| CF-006 | Twitter (X) | 2020 | $280M+ | Vishing helpdesk ("phone spear-phish") |
| CF-007 | Toyota Boshoku (subsidiary) | 2019 | $37M | BEC wire-fraud |
| CF-008 | Facebook + Google | 2013-2015 | $122M | BEC vendor-impersonation |
| CF-009 | Sony Pictures | 2014 | $100M+ | Spear-phish + supply-chain escalation |
| CF-010 | Anthem (Elevance Health) | 2015 | $179M | Spear-phish |
| CF-011 | Target | 2013 | $292M | Spear-phish on HVAC vendor |
| CF-012 | RSA Security | 2011 | $66M | Spear-phish (Excel attachment, zero-day) |
| CF-013 | Mattel | 2015 | $3M (recovered) | BEC, recovered via Bank of China |
| CF-014 | Cencora (AmerisourceBergen) | 2024 | Disclosure pending | Phishing-derived credential theft |
| CF-015 | Activision Blizzard | 2022 | Disclosure pending | SMS phishing of HR personnel |
Cost figures are taken verbatim from primary public filings. Where a settlement is published, the cited figure is the settlement total, not the alleged loss.[SEC EDGAR, OCR, DOJ, state AG offices]