HackingRetail & ConsumerRetailStolen CredentialsCapture App DataCustomer Data InvolvedDelayed DiscoveryPIIIDENTITY_BASICLowResolved
CorePower Yoga, LLC
bd_6407da81d56308e9 · schema v1 · pii pii-v1
Full breach record for CorePower Yoga, LLC →CorePower Yoga, LLC notified the California AG of unauthorized access to multiple employee email accounts between November 7, 2019 and February 3, 2020. A third-party forensic specialist completed its analysis on August 13, 2020. The investigation could not determine which emails were accessed, but personal information (name and other elements) may have been exposed. Affected individuals were offered 12 months of free credit monitoring through TransUnion.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_24361a985b46a685Washington State AGfiled 2020-09-11Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-193986
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 11, 2020
- Raw hash
- 366fe4c41a90bb22e5de171cf47326110387b7104c11117ae8f128fcee0e83fb
Reporting entity
- Name
- CorePower Yoga, LLCnorm: corepower yoga
Victim entity
- Name
- CorePower Yoga, LLCnorm: corepower yoga
- Industry
- Retail & Consumerllm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.