CSIDB logo
Incident

Amtel LLC

Incident posture

Attack window
Apr 2023
Location
United States of America
Status
Historical
CIA posture
Available to members
Updated
2026-02-06 02:11

Linked entities

Victim
Amtel LLC
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Apr 2023
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

Amtel LLC, operating as Connectivity Source, experienced a data breach where an unauthorized party accessed its IT network, compromising sensitive information of 17,835 current and former employees. The breach exposed names and Social Security numbers after attackers infiltrated the company's systems, prompting an investigation with external cybersecurity experts. The Texas-based T-Mobile retailer confirmed the unauthorized data access and subsequently notified affected individuals. The incident impacted employee records, with compromised files containing personally identifiable information.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

1 technique

Description

On April 19, 2023, Amtel, LLC, operating as Connectivity Source, detected suspicious activity within its computer network, prompting an internal investigation with the assistance of a cybersecurity firm. The investigation confirmed that an unauthorized party had gained access to the company's IT infrastructure, compromising files containing sensitive personal information of current and former employees. By April 21, 2023, Amtel completed its review of affected systems and determined that the breach exposed names and Social Security numbers belonging to 17,835 individuals. The company identified no evidence suggesting consumer data was impacted, limiting the breach's scope to employee records. Connectivity Source did not disclose technical details regarding the attack vector, duration of unauthorized access, or specific systems compromised beyond the general reference to its computer network.

Amtel filed a formal notice with the Maine Attorney General on May 10, 2023, and initiated data breach notification letters to all affected individuals on the same date. The breach exposed victims to potential identity theft and financial fraud due to the sensitivity of Social Security numbers. Connectivity Source, a Houston-based T-Mobile retailer operating hundreds of stores across 38 states, reported $115 million in annual revenue but did not disclose operational disruptions or financial losses resulting from the incident. The company's public communications focused exclusively on employee data compromise, with no mention of customer information, proprietary systems, or service interruptions. No threat actor group, motive, or data exfiltration method was identified in the available disclosure.

Sources

Sources available to members: 1 source.

CSIDB