← Back to Breach Management
BR-2026-002InvestigationHigh
Third-Party Data Processor Incident
Owner: Neha Kapoor – Legal · Business unit: Marketing · Detected 30 Dec 1969, 09:00 pm
Board Notification SLA
497081h 46m overdue
Detected 30 Dec 1969, 09:00 pm · Deadline 02 Jan 1970, 09:00 pm
Overdue
Detailed Board update: Pending
100% of the 72-hour window elapsed
Incident Summary
A data processor providing campaign delivery services reported unauthorised access to a shared segment export containing contact details of marketing audiences.
Breach Details
Occurred
30 Dec 1969, 03:00 am
Detected
30 Dec 1969, 09:00 pm
Source
Third Party / Data Processor
Detection method
Security Monitoring
Location
Bengaluru, India
Business unit
Marketing
Systems affected
Third Party Platform
Data Processor
Skyline Campaign Services Pvt Ltd
Records affected
3,240
Data Principals affected
3,240
Nature of breach
Unauthorized Access, Confidentiality Breach
Data categories
Name, Email, Mobile Number
Risk
66 / 100
High
LowMediumHighCritical
Data sensitivityLow
Number affectedMedium
External exposureMedium
Financial impactLow
Credential exposureLow
Current Status
Breach lifecycle progress.
- Detected
- 2AssessmentCurrent stage
- 3Confirmed
- 4Board Notification
- 5DP Notification
- 6Remediation
- 7Closed
