Social EngineeringPhishingStolen CredentialsEmployee Data InvolvedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSCREDENTIALSMediumContained
POINT LOMA NAZARENE UNIVERSITY
bd_311641812307cea4 · schema v1 · pii pii-v1
Full breach record for POINT LOMA NAZARENE UNIVERSITY →Point Loma Nazarene University experienced a phishing attack between October 7 and October 20, 2014, resulting in unauthorized access to five employee email accounts. Potentially compromised data includes names, Social Security numbers, credit card numbers, CVV codes, expiration dates, usernames, passwords, dates of birth, and driver’s license numbers. The University disabled affected accounts, changed passwords, blocked phishing URLs, and is implementing two-factor authentication. Complimentary identity protection services were offered to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-47722
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 15, 2014
- Raw hash
- 1badf3e78533149b1e65abe274d4540aadeddcfd8fe473a9b83e2488df0756ff
Reporting entity
- Name
- POINT LOMA NAZARENE UNIVERSITYnorm: point loma nazarene university
Victim entity
- Name
- POINT LOMA NAZARENE UNIVERSITYnorm: point loma nazarene university
Incident
- Discovered
- Oct 7, 2014
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSCREDENTIALS
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- phishing_link
Compliance
- Time to disclose
- 10 weeks(69 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.