HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedDelayed DiscoveryIDENTITY_BASICCREDENTIALSLowContained
East Bay Municipal Utility District
bd_3aad14dff64943fc · schema v1 · pii pii-v1
Full breach record for East Bay Municipal Utility District →East Bay Municipal Utility District (EBMUD) notified employees of a potential data breach involving its Marconi emergency response software. Unauthorized individuals may have accessed the third-party hosting environment (ersquared.org) between February 5, 2014, and June 4, 2018. While no evidence confirmed personal information access, employee data (name, ID, email, job title, password hash) was stored in the system. EBMUD removed the system from service, engaged MS-ISAC, and enhanced vendor security. No financial impact was disclosed.
California clockDiscovered May 25, 2018 → Notified Jun 27, 201833d ✓ CA 60-day OK5 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-137582
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 29, 2018
- Raw hash
- 07014b57edc3aeda4a2710c10cf9b843fe7875bb7ce0a27dc27cbc544101428e
Reporting entity
- Name
- East Bay Municipal Utility Districtnorm: east bay municipal utility district
- Domain
- ebmud.com
Victim entity
- Name
- East Bay Municipal Utility Districtnorm: east bay municipal utility district
- Domain
- ebmud.com
Incident
- Discovered
- May 25, 2018
- Materiality determined
- —
- Notification sent
- Jun 27, 2018
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 5 weeks(35 days from discovery to filing)
- Compliance flags
- CA 60-day OK · 33d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: May 25, 2018→ Notified: Jun 27, 201833d 60 days (analyst band, pre-2026 discoveries) CA 60-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.