Planet Home Lending reports MOVEit related data breach
Learn More
Planet Home Lending, LLC ("Planet") reported a data breach following the discovery of files containing personally identifiable information of certain customers being compromised due to a vulnerability in the MOVEit application.
Planet disclosed that this incident allowed an unauthorized party to access sensitive consumer information, although the specific data types were redacted in the report.
Planet Home Lending uses the MOVEit file-transfer application, a software product developed by Progress Software. On June 1, 2023, Planet discovered a critical and previously unknown vulnerability in MOVEit, allowing unauthorized parties to access MOVEit servers. The investigation confirmed that on May 29, 2023, an unauthorized party accessed files containing personally identifiable information of specific customers. Although the precise data types were redacted, Planet mentioned that the compromised data was part of "loan files."
Data breach notification letters were sent on August 31, 2023, to individuals impacted by this security incident, providing details about the compromised information.
Planet Home Lending's computer network was not affected by this breach, as all compromised data was stored within the MOVEit platform.