HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICLowContained
Upstream Online
bd_7e4d484b6d371f42 · schema v1 · pii pii-v1
Full breach record for Upstream Online →Upstream RollCo, LLC notified California residents of unauthorized access to employee email accounts between Jan 24 and Feb 9, 2023. The incident involved potential access to names and other personal information. The company secured the email environment, investigated the scope, and is offering credit monitoring. No specific count of affected individuals was disclosed in the notice.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-573416
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 15, 2023
- Raw hash
- b72e13c5fba610326f21e5217cb61a2c8b47940cf15021c0c46d4e5d33b80c61
Reporting entity
- Name
- Upstream Onlinenorm: upstream online
- Domain
- upstreamonline.com
Victim entity
- Name
- Upstream Onlinenorm: upstream online
- Domain
- upstreamonline.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Sep 15, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.