DecisionHR
bd_66e2fda45e48a7ab · schema v1 · pii pii-v1
Full breach record for DecisionHR →DecisionHR Holdings, Inc. reported a data breach occurring between November and December 2017 where an unauthorized third party accessed corporate email accounts of three employees. The emails contained personal information of individuals, including employment records, payroll documents, tax forms, and insurance documentation. DecisionHR implemented corrective actions including password resets, disabling web email access, enforcing 2FA on VPN, and enhanced employee training. Affected individuals were offered one year of credit monitoring and identity protection services through ID Experts.
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-140539
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 8, 2018
- Raw hash
- 7c3e48a19640b721eb4a4d54e053016317a8f893fe83428cc0373a3be50505bd
Reporting entity
- Name
- DecisionHRnorm: decisionhr
- Domain
- decisionhr.com
Victim entity
- Name
- DecisionHRnorm: decisionhr
- Domain
- decisionhr.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIEMPLOYMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.