HackingStolen CredentialsCustomer Data InvolvedEmployee Data InvolvedPIIIDENTITY_BASICPHIHEALTH_BASICLowContained
Allied Services Division Welfare Fund
bd_7b749ada8d94bc85 · schema v1 · pii pii-v1
Full breach record for Allied Services Division Welfare Fund →Allied Services Division Welfare Fund reported that an unauthorized individual gained access to an employee email account between October 9, 2024, and November 26, 2024. The incident was discovered on November 25, 2024. The Fund engaged external cybersecurity professionals for a forensic investigation. Personal information, including potential health insurance data, may have been accessed. No evidence of fraud was found.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_4473822e969ee373Montana State AGfiled 2025-10-02Verified
- bd_c8075fd8cda090d1Texas State AGfiled 2025-10-03(1d gap)Verified
- bd_7876859b27b2e816New Hampshire State AGfiled 2025-08-04(59d gap)Verified
- bd_ea461a4f5e45912bCalifornia State AGfiled 2025-07-30(64d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-612137
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 2, 2025
- Raw hash
- 844e4ad046f0a19b8121f6f6cb5d755446418d14d514b5fff4d362b77f2ab302
Reporting entity
- Name
- Allied Services Division Welfare Fundnorm: allied services division welfare
Victim entity
- Name
- Allied Services Division Welfare Fundnorm: allied services division welfare
Incident
- Discovered
- Nov 25, 2024
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICPHIHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 44 weeks(311 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.