HackingData ExfiltratedCustomer Data InvolvedPIIIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
LCPtracker
bd_5fe6cef2935f0f9c · schema v1 · pii pii-v1
Full breach record for LCPtracker →LCPtracker, Inc. experienced unauthorized access to its online storage account environment between August 14 and August 20, 2024. The company became aware of the incident on August 20, 2024. An unauthorized actor accessed and acquired certain files and data. Affected individuals were notified via mail on December 20, 2024, and offered 12 months of credit monitoring and fraud assistance. The incident involved sensitive personal information, potentially including financial account data.
California clockDiscovered Aug 20, 2024 → Notified Dec 20, 2024122d ✗ CA 60-day late17 weeks discovery → filing
This filing is one of 8 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- bd_4ac47077bd9ff2d3California State AGfiled 2025-01-14(25d gap)Verified
- bd_0e244ae40a6462c9New Hampshire State AGfiled 2024-11-22(28d gap)Verified
- bd_34557b06fe467f71Washington State AGfiled 2024-11-22(28d gap)Candidate
- bd_4726fd00272b61e6Montana State AGfiled 2024-11-22(28d gap)Verified
Show 3 more filings ↓Show fewer ↑up to 28d gap
- bd_520a0c887a11a295Vermont State AGfiled 2024-11-22(28d gap)Verified
- bd_8fd5b2be60792c2fMaine State AGfiled 2024-11-22(28d gap)Verified
- bd_f0bef15520af331eIndiana State AGfiled 2024-11-22(28d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-596512
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 20, 2024
- Raw hash
- 61b6bcdd249d6c8a106adc6dcf5e900c7abe5943cedf8eb679a8d1f2ae78ac74
Reporting entity
- Name
- LCPtrackernorm: lcptracker
- Domain
- prod-cdn.lcptracker.net
Victim entity
- Name
- LCPtrackernorm: lcptracker
- Domain
- prod-cdn.lcptracker.net
Incident
- Discovered
- Aug 20, 2024
- Materiality determined
- —
- Notification sent
- Dec 20, 2024
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Filed notification with California Attorney General
Compliance
- Time to disclose
- 17 weeks(122 days from discovery to filing)
- Compliance flags
- CA 60-day late · 122d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Aug 20, 2024→ Notified: Dec 20, 2024122d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.