HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSHEALTH_BASICAUTHENTICATIONMediumContained
Elevated Title, LLC
bd_481e4cf9ae52f145 · schema v1 · pii pii-v1
Full breach record for Elevated Title, LLC →Elevated Title, LLC, a California-based title services provider, disclosed a security incident involving unauthorized access to company email accounts. The breach occurred between July 21, 2020, and December 19, 2020, with discovery on November 18, 2020. The incident exposed sensitive personal information, including SSNs, financial account details, payment card data, and health information, affecting individuals associated with business partners. Elevated offered complimentary credit monitoring and identity restoration services to affected parties.
California clockDiscovered Nov 18, 2020 → Notified Oct 14, 2021330d ✗ CA 60-day late47 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_7735ad5f81b99ea6Washington State AGfiled 2021-10-14Verified
- bd_e6a4bda7d8ce24c0Montana State AGfiled 2021-10-14Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-546491
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 14, 2021
- Raw hash
- 227ed9985dd9ba2bcf4f9d294be8f8618fcc06749400dc3093492367c31dd764
Reporting entity
- Name
- Elevated Title, LLCnorm: elevated title
Victim entity
- Name
- Elevated Title, LLCnorm: elevated title
Incident
- Discovered
- Nov 18, 2020
- Materiality determined
- —
- Notification sent
- Oct 14, 2021
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSHEALTH_BASICAUTHENTICATION
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 47 weeks(330 days from discovery to filing)
- Compliance flags
- CA 60-day late · 330d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Nov 18, 2020→ Notified: Oct 14, 2021330d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.