AccidentalMisconfigurationData ExfiltratedCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
Academic Therapy Publications
bd_0782cd846a38ba24 · schema v1 · pii pii-v1
Full breach record for Academic Therapy Publications →Academic Therapy Publications disclosed a data breach involving unauthorized access to an improperly secured administrative feature on its websites (academictherapy.com and highnoonbooks.com). The incident occurred between January 6, 2020, and July 25, 2021, and was discovered on September 14, 2021, via a payment processor alert. The attacker accessed customer names, addresses, phone numbers, emails, and credit/debit card numbers. The company corrected the configuration error, added security measures, and notified the California Attorney General and payment processors.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-546488
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 14, 2021
- Raw hash
- c3ece14d6b4751e834b9d7efefc8092998e0cb707fad40fe4f3bc9cce897c8d5
Reporting entity
- Name
- Academic Therapy Publicationsnorm: academic therapy publications
- Domain
- academictherapy.com
Victim entity
- Name
- Academic Therapy Publicationsnorm: academic therapy publications
- Domain
- academictherapy.com
Incident
- Discovered
- Sep 14, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified the California Attorney General
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 4 weeks(30 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.