HackingSupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Allen Chern LLP
bd_7a2c685a40dfd1ab · schema v1 · pii pii-v1
Full breach record for Allen Chern LLP →Allen Chern LLP (d/b/a UpRight Law) notified the California AG that a third-party vendor's database containing client personal information was potentially acquired by an unauthorized individual between July 27 and July 30, 2018. The affected data included full names, Social Security numbers, and debit account information. The firm engaged external cybersecurity professionals and offered one year of complimentary credit monitoring to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-144176
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 28, 2019
- Raw hash
- 7848e96cb85e5b407403629045ba284b456d198c01d6587614e0e701535c28bf
Reporting entity
- Name
- Allen, Texasnorm: allen texas
- Domain
- cityofallen.org
Victim entity
- Name
- Allen Chern LLPnorm: allen chern
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Dec 27, 2018
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- External
- Third party
- via third-party vendor
- Initial access
- supply_chain
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.