HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICLowContained
Tristar Group
bd_38cc11377e6d2c0f · schema v1 · pii pii-v1
Full breach record for Tristar Group →TRISTAR Insurance Group notified the California Attorney General of a data breach involving unauthorized access to its email environment. The incident occurred between November 4 and November 9, 2022, and was discovered on November 10, 2022. The breach exposed customer information, including names and potentially other personal data. TRISTAR engaged forensic specialists, secured the environment, and is offering 24 months of credit monitoring to affected individuals.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_c6053076ac9ab7e1Montana State AGfiled 2024-01-19(39d gap)Verified
- bd_a90284032b05fe16California State AGfiled 2024-02-01(52d gap)Verified
- bd_d4f88d85def79680Indiana State AGfiled 2024-02-01(52d gap)Verified
- bd_e4c57a2c71196cb5New Hampshire State AGfiled 2024-02-01(52d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 98d gap
- bd_9449f03ad3d6982fNew Hampshire State AGfiled 2024-03-18(98d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-577720
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 11, 2023
- Raw hash
- 078fbe6f109ecac85f868c0861fe5259c976002f3473572f7f493e3db0053fa3
Reporting entity
- Name
- Tristar Groupnorm: tristar group
- Domain
- tristargroup.net
Victim entity
- Name
- Tristar Groupnorm: tristar group
- Domain
- tristargroup.net
Incident
- Discovered
- Nov 10, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Regulator citations
- Reported this event to law enforcement
Compliance
- Time to disclose
- 13 months(396 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.