HackingData ExfiltratedCustomer Data InvolvedDelayed DiscoveryPIIIDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENTMediumContained
UA Sprinkler Fitters Local 669 Joint Apprenticeship and Training Committee ("JATC")
bd_7fb41b280da62dc7 · schema v1 · pii pii-v1
Full breach record for UA Sprinkler Fitters Local 669 Joint Apprenticeship and Training Committee ("JATC") →UA Sprinkler Fitters Local 669 JATC experienced a cybersecurity attack between May 17 and May 23, 2024, where an unauthorized actor copied files from their network. The organization became aware of suspicious activity on May 23, 2024. A forensic review concluded in January 2026, determining that sensitive information, including PII and employment data, was involved. The incident is contained, and the organization is offering credit monitoring to affected individuals.
California clockDiscovered May 23, 2024 → Notified Feb 4, 2026622d ✗ CA 60-day late21 months discovery → filing
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-618341
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 6, 2026
- Raw hash
- 2bc2a4a445b517c5dda55c978c263a2b0beb2eed07af4c48e4798617eb128bb8
Reporting entity
- Name
- UA Sprinkler Fitters Local 669 Joint Apprenticeship and Training Committee ("JATC")norm: ua sprinkler fitters local 669 joint apprenticeship and training committee jatc
Victim entity
- Name
- UA Sprinkler Fitters Local 669 Joint Apprenticeship and Training Committee ("JATC")norm: ua sprinkler fitters local 669 joint apprenticeship and training committee jatc
Incident
- Discovered
- May 23, 2024
- Materiality determined
- —
- Notification sent
- Feb 4, 2026
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1041 Exfiltration Over C2 ChannelT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Filed notification with California Attorney General
Compliance
- Time to disclose
- 21 months(624 days from discovery to filing)
- Compliance flags
- CA 60-day late · 622dCA AG copy ≤15d · 2d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: May 23, 2024→ Notified: Feb 4, 2026622d 60 days (analyst band, pre-2026 discoveries) CA 60-day late California Consumers notified: Feb 4, 2026→ AG copy submitted: Feb 6, 20262d 15 calendar days CA AG copy ≤15d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.