HackingSupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
Total Wireless
bd_13f02acc3eea5958 · schema v1 · pii pii-v1
Full breach record for Total Wireless →Total Wireless notified customers that its third-party identity verification provider, Veriff, experienced a data breach. An unauthorized party accessed personal information from Veriff's systems, including images of government-issued IDs, postal addresses, and dates of birth. The incident occurred on November 18, 2025. Total Wireless is providing one year of free identity protection and credit monitoring via Experian.
California clockConsumers notified Jan 9, 2026 → AG copy submitted Jan 9, 20260d ✓ CA AG copy ≤15d
⚠ no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_421e484843bb5683Indiana State AGfiled 2026-01-09Verified
- bd_522330d0bde81a55Indiana State AGfiled 2026-01-09Verified
- bd_60a42f6940cf473eVermont State AGfiled 2026-01-09Verified
- bd_c7d46e788ff0b564Montana State AGfiled 2026-01-09Verified
Show 2 more filings ↓Show fewer ↑up to 4d gap
- bd_f73dbc978139c036Maine State AGfiled 2026-01-09Verified
- bd_35f9dbfd39d47241Texas State AGfiled 2026-01-13(4d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-616812
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 9, 2026
- Raw hash
- f94fbb15525f25b3baef834cd858ddaf574a67d078648b348b895dfcf8328067
Reporting entity
- Name
- Total Wirelessnorm: total wireless
Victim entity
- Name
- Total Wirelessnorm: total wireless
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jan 9, 2026
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Third-Party / Supply Chain
- Threat actor
- External
- Third party
- via Veriff
- Initial access
- supply_chain
Compliance
- Compliance flags
- CA AG copy ≤15d · 0d
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status California Consumers notified: Jan 9, 2026→ AG copy submitted: Jan 9, 20260d 15 calendar days CA AG copy ≤15d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.