MalwareRansomwareData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
DIVERSIFIED GAS & OIL CORPORATION
bd_10dab56a2a8fb4c7 · schema v1 · pii pii-v1
Full breach record for DIVERSIFIED GAS & OIL CORPORATION →Diversified Gas & Oil Corporation notified California AG that on November 25, 2020, a malware infection infiltrated its systems between November 17 and 25, 2020. The incident involved unauthorized access to personal information including names, addresses, and Social Security numbers of business partners and royalty payees. The company engaged third-party specialists, notified law enforcement, and offered two years of credit monitoring and identity protection services via IDX.
California clockDiscovered Nov 25, 2020 → Notified Jan 27, 202163d ✗ CA 60-day late9 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_2555950badecff1aMaine State AGfiled 2021-01-27Candidate
- bd_bf190fde1c5e1c02Montana State AGfiled 2021-01-27Verified
- bd_0b72bd2acd85061dMaine State AGfiled 2021-03-04(36d gap)Verified by operator
- bd_6152aff53228a8b3Montana State AGfiled 2021-03-04(36d gap)Verified by operator
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-537500
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 27, 2021
- Raw hash
- fcb0bca76249297ff3b00608de16d8eb57c9d14d3fd77652fd44007e7aa68342
Reporting entity
- Name
- DIVERSIFIED GAS & OIL CORPORATIONnorm: diversified gas oil
Victim entity
- Name
- DIVERSIFIED GAS & OIL CORPORATIONnorm: diversified gas oil
Incident
- Discovered
- Nov 25, 2020
- Materiality determined
- —
- Notification sent
- Jan 27, 2021
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 9 weeks(63 days from discovery to filing)
- Compliance flags
- CA 60-day late · 63d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Nov 25, 2020→ Notified: Jan 27, 202163d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.