HackingStolen CredentialsCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHighContained
Movement Mortgage LLC
bd_84611419ab4b36ef · schema v1 · pii pii-v1
Full breach record for Movement Mortgage LLC →Movement Mortgage LLC disclosed unauthorized access to employee email accounts between October 9, 2017, and March 29, 2018. The incident involved the use of compromised credentials to send phishing emails and access personal information of loan applicants, including names, Social Security numbers, driver's license numbers, passport numbers, taxpayer ID numbers, credit card numbers, and bank account information. Approximately 9,605 California residents were affected. The company reset credentials, implemented MFA, and offered credit monitoring.
California clockDiscovered Jan 1, 2018 → Notified Aug 31, 2018242d ✗ CA 60-day late35 weeks discovery → filing
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_0728f76685a58286Oregon State AGfiled 2018-08-31Candidate
- bd_c5db8dad3fdbc576Montana State AGfiled 2018-08-31Verified by operator
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-139484
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 31, 2018
- Raw hash
- 3615ea7d6c2d38e3babccbb16f66630bb2b3b9387248542c7fcc3de1d91984a5
Reporting entity
- Name
- Movement Mortgage LLCnorm: movement mortgage
Victim entity
- Name
- Movement Mortgage LLCnorm: movement mortgage
Incident
- Discovered
- Jan 1, 2018
- Materiality determined
- —
- Notification sent
- Aug 31, 2018
- Affected individuals
- 9,605
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Regulator citations
- Providing notice to other state regulators
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 35 weeks(242 days from discovery to filing)
- Compliance flags
- CA 60-day late · 242d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Jan 1, 2018→ Notified: Aug 31, 2018242d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.