HackingCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
PRIMARY RESIDENTIAL MORTGAGE, INC.
bd_2093a72f41f44b2f · schema v1 · pii pii-v1
Full breach record for PRIMARY RESIDENTIAL MORTGAGE, INC. →Primary Residential Mortgage, Inc. reported a data security incident on August 8, 2021, involving unauthorized access to systems containing personal information of borrowers and employees, including names, Social Security numbers, and driver's license numbers. The company took servers offline, engaged third-party cybersecurity firms, and notified law enforcement. Affected individuals were offered one year of credit monitoring.
California clockDiscovered Aug 8, 2021 → Notified Oct 27, 202180d ✗ CA 60-day late11 weeks discovery → filing
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_0e5f91f1dd061c9dWashington State AGfiled 2021-10-27Candidate
- bd_a33158fbc0c2c99dMontana State AGfiled 2021-10-27Verified
- bd_f6897d976c2fcae5Maine State AGfiled 2021-10-27Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-546950
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 27, 2021
- Raw hash
- f609a112c9d7f6cb50fa288c418e55bd725dd0d1f359840c3ac47e9fec6c5e27
Reporting entity
- Name
- PRIMARY RESIDENTIAL MORTGAGE, INC.norm: primary residential mortgage
Victim entity
- Name
- PRIMARY RESIDENTIAL MORTGAGE, INC.norm: primary residential mortgage
Incident
- Discovered
- Aug 8, 2021
- Materiality determined
- —
- Notification sent
- Oct 27, 2021
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
Compliance
- Time to disclose
- 11 weeks(80 days from discovery to filing)
- Compliance flags
- CA 60-day late · 80d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Aug 8, 2021→ Notified: Oct 27, 202180d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.