HackingData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSHEALTH_BASICCREDENTIALSMediumContained
Downtown Grass Valley
bd_3ce265a2f8ca8529 · schema v1 · pii pii-v1
Full breach record for Downtown Grass Valley →The City of Grass Valley experienced unauthorized access to its computer systems between April 13, 2021, and July 1, 2021. The attacker exfiltrated files containing names, Social Security numbers, driver's license numbers, financial account and payment card information, and limited medical/health insurance data for employees, vendors, and residents. The City notified law enforcement, engaged a cybersecurity firm, and began notifying affected individuals on January 7, 2022, offering one year of Experian IdentityWorks.
California clockDiscovered Jul 1, 2021 → Notified Jan 7, 2022190d ✗ CA 60-day late27 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-549778
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 7, 2022
- Raw hash
- 72497b74b05d0645eaa62f7ab1ca2d733776761013832138f3f9ede6a7d739ca
Reporting entity
- Name
- Downtown Grass Valleynorm: downtown grass valley
- Domain
- downtowngrassvalley.com
Victim entity
- Name
- Downtown Grass Valleynorm: downtown grass valley
- Domain
- downtowngrassvalley.com
Incident
- Discovered
- Jul 1, 2021
- Materiality determined
- —
- Notification sent
- Jan 7, 2022
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSHEALTH_BASICCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 27 weeks(190 days from discovery to filing)
- Compliance flags
- CA 60-day late · 190d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Jul 1, 2021→ Notified: Jan 7, 2022190d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.