HackingStolen CredentialsCapture App DataData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTPIIMediumContained
Far Niente
bd_81a61276e332a30c · schema v1 · pii pii-v1
Full breach record for Far Niente →On April 24, 2023, an unauthorized individual gained access to certain Far Niente email accounts and internal documents. Affected data may have included names, credit card numbers or social security numbers, addresses, and contact information. Far Niente changed affected credentials, cut off access, engaged a forensic firm, and offered 24 months of complimentary Experian IdentityWorks credit monitoring to affected individuals. Notification letters were sent September 11, 2023.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-573106
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 11, 2023
- Raw hash
- cc270986f6cd8b1addec7efb22ed679e508adf08b2e871fc75fc6e6db13b2ffd
Reporting entity
- Name
- Far Nientenorm: far niente
Victim entity
- Name
- Far Nientenorm: far niente
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Sep 11, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTPII
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.