SILICON VALLEY COMMUNITY FOUNDATION
bd_3f952b9232348059 · schema v1 · pii pii-v1
Full breach record for SILICON VALLEY COMMUNITY FOUNDATION →Silicon Valley Community Foundation (SVCF) disclosed that unauthorized access occurred to email accounts containing personally identifiable information. Initial suspicious activity was detected on August 23, 2018, involving three compromised email accounts. In December 2019, SVCF discovered that one of these compromised mailboxes had access to a larger shared mailbox used for collecting scholarship information, potentially exposing names, addresses, photos, passport numbers, driver's license numbers, and school records. SVCF offered one year of complimentary credit monitoring to affected individuals.
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-189302
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 20, 2020
- Raw hash
- cb653f407388ce6ed07d0b1c4e81a5b68d668728c693dd270b03fc1fce0836aa
Reporting entity
- Name
- SILICON VALLEY COMMUNITY FOUNDATIONnorm: silicon valley community
Victim entity
- Name
- SILICON VALLEY COMMUNITY FOUNDATIONnorm: silicon valley community
Incident
- Discovered
- Dec 1, 2019
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTEDUCATION
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 20 weeks(141 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.