MalwareRansomwareData ExfiltratedData EncryptedCustomer Data InvolvedPIIIDENTITY_BASICMediumResolved
INFOSYS MCCAMISH SYSTEMS, LLC
bd_09a55fdd2bbb246a · schema v1 · pii pii-v1
Full breach record for INFOSYS MCCAMISH SYSTEMS, LLC →Infosys McCamish Systems LLC experienced a ransomware incident where systems were encrypted and data was subject to unauthorized access and acquisition between October 29 and November 2, 2023. The company became aware of the incident on November 2, 2023. The incident has been contained and remediated. Approximately 2,424 individuals were affected. The company engaged third-party cybersecurity experts and notified law enforcement. Complimentary identity monitoring services are being provided.
California clockDiscovered Nov 2, 2023 → Notified May 28, 2024208d ✗ CA 60-day late41 weeks discovery → filing
This filing is one of 13 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- bd_4f0f0f3fd5c44be8Maine State AGfiled 2024-08-13(2d gap)Verified
- bd_2c639b79e4797456California State AGfiled 2024-09-09(25d gap)Verified
- bd_e4f30fd83097d2eaMaine State AGfiled 2024-09-09(25d gap)Verified
- bd_8df9b1b9b6a5a176California State AGfiled 2024-07-19(27d gap)Verified
Show 6 more filings ↓Show fewer ↑up to 49d gap
- bd_113d2318c13a1bf9California State AGfiled 2024-06-28(48d gap)Verified
- bd_118ac386a65120dfWashington State AGfiled 2024-06-27(49d gap)Candidate
- bd_3c00e95f3727fd47Vermont State AGfiled 2024-06-27(49d gap)Verified
- bd_4cf04db073068a7fMontana State AGfiled 2024-06-27(49d gap)Verified
- bd_bf7aea3b027e4b99Delaware State AGfiled 2024-06-27(49d gap)Verified
- bd_cc7b7300d54b61e2Oregon State AGfiled 2024-06-27(49d gap)Verified
Showing first 10 of 12 linked disclosures.
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-590264
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 15, 2024
- Raw hash
- c611b261ea51a08dbc401d16f3caaadde58bc435b44169be92439672ae6a8042
Reporting entity
- Name
- INFOSYS MCCAMISH SYSTEMS, LLCnorm: infosys mccamish
- Domain
- www.infosysbpm.com
Victim entity
- Name
- INFOSYS MCCAMISH SYSTEMS, LLCnorm: infosys mccamish
- Domain
- www.infosysbpm.com
Incident
- Discovered
- Nov 2, 2023
- Materiality determined
- —
- Notification sent
- May 28, 2024
- Affected individuals
- 2,424
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified law enforcement
Compliance
- Time to disclose
- 41 weeks(287 days from discovery to filing)
- Compliance flags
- CA 60-day late · 208d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Nov 2, 2023→ Notified: May 28, 2024208d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.