SEQUOIA CAPITAL OPERATIONS, LLC
bd_0b393d1f5eeece3e · schema v1 · pii pii-v1
Full breach record for SEQUOIA CAPITAL OPERATIONS, LLC →Sequoia Capital Operations, LLC notified the California AG of a cybersecurity incident where an unauthorized third party gained remote access to one employee's business email mailbox on or about January 20, 2021. The apparent aim was a wire diversion scam. The breach date listed on the form is January 7, 2021. Fewer than 1,000 California residents were affected. Personal information including names and potentially other PII was exposed. The company engaged cybersecurity experts, remediated the configuration issue, enhanced security protections, and offered 24 months of credit monitoring.
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_0b2d6ab6730d21c5Montana State AGfiled 2021-02-18Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-538102
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 18, 2021
- Raw hash
- 43c0d8be0a1221308b439c18f06a6383661e5daa940e27de84e004d745252174
Reporting entity
- Name
- SEQUOIA CAPITAL OPERATIONS, LLCnorm: sequoia capital operations
Victim entity
- Name
- SEQUOIA CAPITAL OPERATIONS, LLCnorm: sequoia capital operations
Incident
- Discovered
- Jan 20, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 1,000
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Contacted law enforcement
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 29 days(29 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.