CSIDB logo
Incident

Total Quality Logistics

Incident posture

Attack window
Feb 2020
Location
United States of America
Status
Historical
CIA posture
Available to members
Updated
2025-10-31 00:00

Linked entities

Victim
Total Quality Logistics
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Feb 2020
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

Total Quality Logistics experienced a cybersecurity incident where external hackers breached its IT systems, accessing sensitive business information belonging to some carriers. The company clarified that the breach did not involve malware or ransomware and engaged a cybersecurity firm to investigate the intrusion. Affected carriers were notified following confirmation of the incident.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

1 technique

Description

Total Quality Logistics (TQL) experienced a data breach involving unauthorized access to sensitive business information belonging to some of its carrier partners. The company confirmed the incident on February 23, 2020, after external hackers breached its IT systems. TQL's corporate communications manager, Tom Millikin, explicitly stated the compromise did not result from malware or ransomware attacks, distinguishing it from common cyberattack vectors. The breach exposed carriers' confidential business data, though specific details about the compromised information types or the number of affected entities were not disclosed in available reports. TQL initiated an immediate response by engaging an external cybersecurity firm to investigate the intrusion's origin and methodology.

The company began notifying impacted carriers following its confirmation of the breach, with some notifications occurring as late as early Thursday, February 20 – three days prior to the official public acknowledgment. This notification timeline suggests TQL's investigation identified affected parties progressively after initial detection. No evidence indicates customer data was compromised, as reports solely reference carrier information exposure. TQL committed to continuing its collaboration with cybersecurity experts to determine the precise attack vector and strengthen system defenses. The incident disrupted carrier operations by exposing sensitive business details, though financial impacts, regulatory consequences, and specific remediation measures beyond the investigative partnership remain undocumented in available sources.

Sources

Sources available to members: 1 source.

CSIDB