Social EngineeringPhishingData ExfiltratedCustomer Data InvolvedTargetedPIICREDENTIALSLowActive
City of Sun Valley
bd_33005caa1c47060e · schema v1 · pii pii-v1
Full breach record for City of Sun Valley →City of Sun Valley notified the Idaho Attorney General on April 2, 2024, of a data security incident discovered on March 20, 2024. An employee email account was subject to unauthorized access, likely via phishing, resulting in the unauthorized acquisition of personal information (PII). The City engaged legal counsel and a digital forensics firm, notified its CIO, and plans to notify impacted individuals with an offer of credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://www.ag.idaho.gov/content/uploads/2024/04/04-02-2024-City-of-Sun-Valley.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 21, 2024
- Raw hash
- 6d0cde0610d014a4b0728d0ebeeba5df12884aaf1748b488e684601dc2e99e06
Reporting entity
- Name
- City of Sun Valleynorm: city of sun valley
- Domain
- sunvalleyidaho.gov
Victim entity
- Name
- City of Sun Valleynorm: city of sun valley
- Domain
- sunvalleyidaho.gov
Incident
- Discovered
- Mar 20, 2024
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIICREDENTIALS
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- External
- Regulator citations
- Provided notice to the Office of the Idaho Attorney General, Consumer Protection Division
- Initial access
- phishing_link
Compliance
- Time to disclose
- ≤1 day(1 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.