ThreatCluster

Criminal Division Reports Multiple Security Incidents Involving PII and Classified Information

First seen 9 Aug 2026, 21:19 UTC Oig.Justice 70% similarity 37

Article Content

Browse articles
ThreatCluster

Between December 2005 and November 2006, the Criminal Division reported 24 security incidents to DOJCERT, including 5 incidents involving potential PII loss and 10 incidents potentially involving classified information. The Criminal Division defines reportable data loss as information on lost electronic media or devices, or information released from its network. Employees are required to report incidents immediately to the Information Technology Management Help Desk, which logs the incident and notifies the Incident Response Team. The team assesses the incident and provides initial reports to DOJCERT, with formal reports typically submitted within 24 hours. The division's Incident Response Plan has been updated to align with DOJCERT's guidelines. The Criminal Division relies on definitions from OMB Memorandum M-06-19 for PII and Executive Order 12958 for classified information.

Key Points: • 24 security incidents reported by the Criminal Division between December 2005 and November 2006. • 5 incidents involved potential loss of Personally Identifiable Information (PII). • Incident reporting procedures require immediate action and formal reporting within 24 hours.

ThreatCluster AI How this analysis works

Timeline

2005-12-01
Start of reporting period for security incidents
The Criminal Division began documenting security incidents to DOJCERT, focusing on sensitive and classified information.
Oig.Justice
2006-07-12
OMB Memorandum M-06-19 issued
This memorandum defined PII for federal agencies, impacting how the Criminal Division reported incidents.
Oig.Justice
2006-11-30
End of reporting period for security incidents
The Criminal Division concluded the reporting period with a total of 24 incidents reported to DOJCERT.
Oig.Justice

Community

Browse all →