HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNTMediumContained
Comstar Technologies, LLC
bd_464f9d9da319c021 · schema v1 · pii pii-v1
Full breach record for Comstar Technologies, LLC →Comstar, LLC reported a data security event occurring between March 19 and 26, 2022, involving unauthorized access to network files. The breach potentially exposed personal information of individuals, including names, dates of birth, Social Security numbers, health insurance details, and medical assessments. Comstar engaged third-party experts for investigation, secured its network, and offered credit monitoring services to affected individuals. The filing is a sample notification submitted to the California Office of the Attorney General.
This filing is one of 8 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- bd_1a59883a0195e6ffMaine State AGfiled 2022-08-22Verified
- bd_b95db5904d98be34Maine State AGfiled 2022-06-30(53d gap)Verified
- bd_d818ee99f86b12ddCalifornia State AGfiled 2022-06-30(53d gap)Verified
- bd_85177613717390c1California State AGfiled 2022-06-14(69d gap)Verified
Show 3 more filings ↓Show fewer ↑up to 91d gap
- bd_7c3a134ab345e736HHS OCRfiled 2022-05-26(88d gap)Verified
- bd_7e62f29ad917b45dMontana State AGfiled 2022-05-25(89d gap)Verified
- bd_2302ead0876e2449Maine State AGfiled 2022-05-23(91d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-556479
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 22, 2022
- Raw hash
- c6b8d3ab4080e0a84eb5a6f1ef6dd92b5c007063999bd3f592d000ad50696547
Reporting entity
- Name
- Comstar Technologies, LLCnorm: comstar technologies
Victim entity
- Name
- Comstar Technologies, LLCnorm: comstar technologies
Incident
- Discovered
- Mar 26, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- reporting to regulatory officials
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 21 weeks(149 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.