MalwareRansomwareData EncryptedTargetedIDENTITY_BASICLowContained
Tuttle-Click Automotive Group
bd_1ed407818229b8a3 · schema v1 · pii pii-v1
Full breach record for Tuttle-Click Automotive Group →Tuttle-Click Automotive Group experienced a ransomware incident where an unknown actor encrypted systems and accessed data between Nov 24, 2023 and Dec 5, 2023. The company moved systems offline, engaged law enforcement, and offered 24 months of credit monitoring. Impacted data included names and other elements; exact count undisclosed.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_2cce3717c9e0beb4Indiana State AGfiled 2024-09-19Verified
- bd_7ab0b90e83a61820New Hampshire State AGfiled 2024-09-19Verified
- bd_a02f44ca35536262Maine State AGfiled 2024-09-19Verified
- bd_d6c366e55cd3f63aMontana State AGfiled 2024-09-19Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-592128
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 19, 2024
- Raw hash
- a68ece22efb7760b93d275e8c7d24e18bf62681c62db69d559682ffbac00eb8f
Reporting entity
- Name
- Tuttle-Click Automotive Groupnorm: tuttle click automotive
Victim entity
- Name
- Tuttle-Click Automotive Groupnorm: tuttle click automotive
Incident
- Discovered
- —
- Materiality determined
- Sep 19, 2024
- Notification sent
- Sep 19, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified relevant regulators
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.