HackingCustomer Data InvolvedIDENTITY_BASICLowContained
Pacific Symphony
bd_09ec321064b24e00 · schema v1 · pii pii-v1
Full breach record for Pacific Symphony →Pacific Symphony notified the California Attorney General of a cybersecurity incident on August 21, 2025, where an unauthorized third party accessed part of its IT network. The organization terminated access and engaged forensic experts. Investigation determined the actor had the opportunity to extract data, including full names and other personal information. No evidence of actual misuse was found. Affected individuals were offered 12 months of credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-614068
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 10, 2025
- Raw hash
- 420a5a40cfdca12387fc8bf4a76ab6117083b657d3361854367465cb9fe981e5
Reporting entity
- Name
- Pacific Symphonynorm: pacific symphony
- Domain
- pacificsymphony.org
Victim entity
- Name
- Pacific Symphonynorm: pacific symphony
- Domain
- pacificsymphony.org
Incident
- Discovered
- Aug 21, 2025
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
Compliance
- Time to disclose
- 12 weeks(81 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.