HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Ahtna Incorporated
bd_11bf1ab7ad30a689 · schema v1 · pii pii-v1
Full breach record for Ahtna Incorporated →Ahtna, Inc. reported a data breach where an unauthorized third party accessed systems between April 20, 2025, and June 1, 2025, acquiring files containing personal information including names and Social Security numbers. The incident was discovered on July 28, 2025. This is a supplemental notice. Ahtna contained the network, engaged outside professionals for investigation, and is offering credit monitoring services to affected individuals.
California clockDiscovered Jul 28, 2025 → Notified Jan 20, 2026176d ✗ CA 60-day late25 weeks discovery → filing
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_4e509ebc850ec1d9Texas State AGfiled 2026-02-20(31d gap)Verified by operator
- bd_12ccee8c9159108cCalifornia State AGfiled 2025-11-21(60d gap)Verified
- bd_2ff3c11d1751fbb2Maine State AGfiled 2025-11-21(60d gap)Candidate
- bd_31c06274ced5bd37Indiana State AGfiled 2025-11-21(60d gap)Verified
Show 2 more filings ↓Show fewer ↑up to 60d gap
- bd_90c6835deaec4751Vermont State AGfiled 2025-11-21(60d gap)Verified
- bd_f23a1a2a204c96b5New Hampshire State AGfiled 2025-11-21(60d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-619000
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 20, 2026
- Raw hash
- 724bbe9864eabcb5f12b24205e8baf0ce92fc18fb4de1f257648297e8912995c
Reporting entity
- Name
- Ahtna Incorporatednorm: ahtna
- Domain
- ahtna.com
Victim entity
- Name
- Ahtna Incorporatednorm: ahtna
- Domain
- ahtna.com
Incident
- Discovered
- Jul 28, 2025
- Materiality determined
- —
- Notification sent
- Jan 20, 2026
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1041 Exfiltration Over C2 Channel
- Threat actor
- External
Compliance
- Time to disclose
- 25 weeks(176 days from discovery to filing)
- Compliance flags
- CA 60-day late · 176dCA AG copy ≤15d · 0d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Jul 28, 2025→ Notified: Jan 20, 2026176d 60 days (analyst band, pre-2026 discoveries) CA 60-day late California Consumers notified: Jan 20, 2026→ AG copy submitted: Jan 20, 20260d 15 calendar days CA AG copy ≤15d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.