MalwareRansomwareCapture Stored DataData ExfiltratedCustomer Data InvolvedPIIIDENTITY_BASICLowContained
Houser
bd_3f910d0506adf4a3 · schema v1 · pii pii-v1
Full breach record for Houser →Houser LLP, a legal services firm, experienced a ransomware incident where files were encrypted and data was exfiltrated between May 7-9, 2023. The firm discovered the encryption on May 9, 2023. Investigation confirmed unauthorized access and copying of files containing names and other personal information. The actor later claimed to have deleted the stolen data. Houser implemented MFA, EDR, and other security controls. Credit monitoring is offered to affected individuals.
California clockDiscovered May 9, 2023 → Notified Apr 12, 2024339d ✗ CA 60-day late48 weeks discovery → filing
This filing is one of 19 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- bd_521a4b0865ecc11aVermont State AGfiled 2024-04-12Verified
- bd_5c7bcad0b397e0a1New Hampshire State AGfiled 2024-04-12Verified
- bd_631c1acc1b5f6e81Delaware State AGfiled 2024-04-12Verified
- bd_b60a96892267f8ccMaine State AGfiled 2024-04-12Verified
Show 6 more filings ↓Show fewer ↑up to 44d gap
- bd_af0b2641e3351df6Vermont State AGfiled 2024-03-27(16d gap)Verified
- bd_13a325d86f76f6f7New Hampshire State AGfiled 2024-03-26(17d gap)Verified
- bd_18b5dd7e86b21352Delaware State AGfiled 2024-03-26(17d gap)Verified
- bd_8a4cf4dd8b36d1b4California State AGfiled 2024-03-26(17d gap)Verified
- bd_c1c7841f0ee89fe5Maine State AGfiled 2024-03-26(17d gap)Verified
- bd_07473cc11b32f8e7Maine State AGfiled 2024-02-28(44d gap)Candidate
Showing first 10 of 18 linked disclosures.
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-583890
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 12, 2024
- Raw hash
- 5d22534558891820d129557acc163b6a33c3834b4bd8e5a0fdd116c7fcc41576
Reporting entity
- Name
- Housernorm: houser
- Domain
- houser.com
Victim entity
- Name
- Housernorm: houser
- Domain
- houser.com
Incident
- Discovered
- May 9, 2023
- Materiality determined
- —
- Notification sent
- Apr 12, 2024
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- External
Compliance
- Time to disclose
- 48 weeks(339 days from discovery to filing)
- Compliance flags
- CA 60-day late · 339d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: May 9, 2023→ Notified: Apr 12, 2024339d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.