HackingCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTPIIMediumContained
Automotive Recovery Services. Inc.
bd_1d18cd4f39ef1183 · schema v1 · pii pii-v1
Full breach record for Automotive Recovery Services. Inc. →Automotive Recovery Services, Inc. disclosed a breach of legacy systems affecting vehicle donation processing data. Unauthorized access occurred between July 2012 and May 2015, exposing names, SSNs, driver's license numbers, and contact information of individuals who donated vehicles to charities. No evidence of misuse was found. The company provided 12 months of identity protection services via AllClear ID and implemented additional security layers.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_bbaea8979431c03aSouth Carolina State AGfiled 2015-07-07(1d gap)Candidate
- bd_867d23aad23b34f5Hawaii State AGfiled 2015-07-09(3d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-56920
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 6, 2015
- Raw hash
- 5856982e42f38042cd88dfbdb627ebcb412d24985f9ebea9712c77ce5088727d
Reporting entity
- Name
- Automotive Recovery Services. Inc.norm: automotive recovery
Victim entity
- Name
- Automotive Recovery Services. Inc.norm: automotive recovery
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jul 1, 2015
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTPII
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.