HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
AIS Inc
bd_75bd756c8f7a12ae · schema v1 · pii pii-v1
Full breach record for AIS Inc →AIS InfoSource LP notified the California Attorney General of a data breach where an unauthorized actor gained access to its environment between February 16 and 21, 2025. The company identified suspicious activity on February 17, 2025. The incident involved the exfiltration of a limited subset of data, including names, Social Security Numbers, and financial account information. AIS engaged third-party forensic specialists, secured its network, and is offering credit monitoring and identity restoration services to affected individuals. The investigation is contained.
California clockDiscovered Feb 17, 2025 → Notified Jun 13, 2025116d ✗ CA 60-day late19 weeks discovery → filing
This filing is one of 9 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- bd_1953d698d62e8e4dVermont State AGfiled 2025-06-30Verified
- bd_c2fcdb77a103f364New Hampshire State AGfiled 2025-06-30Verified
- bd_ef63887c32401b4eIndiana State AGfiled 2025-06-30Verified
- bd_0504c046ba35e9a6New Hampshire State AGfiled 2025-07-21(21d gap)Verified
Show 4 more filings ↓Show fewer ↑up to 66d gap
- bd_ac840f7499b9ded1California State AGfiled 2025-07-21(21d gap)Candidate
- bd_12b45644bcfa9d13Montana State AGfiled 2025-08-29(60d gap)Candidate
- bd_7cff3a58df38cce4California State AGfiled 2025-08-29(60d gap)Verified
- bd_545aa9b9cb26e2a4Texas State AGfiled 2025-09-04(66d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-604752
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 30, 2025
- Raw hash
- 443363a44325a0cf4e7468ecbfe85c6e7b72fd010ee4edf49646a9a42c01f799
Reporting entity
- Name
- AIS Incnorm: ais
- Domain
- ais-inc.com
Victim entity
- Name
- AIS Incnorm: ais
- Domain
- ais-inc.com
Incident
- Discovered
- Feb 17, 2025
- Materiality determined
- —
- Notification sent
- Jun 13, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
Compliance
- Time to disclose
- 19 weeks(133 days from discovery to filing)
- Compliance flags
- CA 60-day late · 116d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Feb 17, 2025→ Notified: Jun 13, 2025116d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.