MalwareRansomwareData EncryptedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
The Long & Foster Companies, Inc.
bd_86c32d4710cbe091 · schema v1 · pii pii-v1
Full breach record for The Long & Foster Companies, Inc. →The Long & Foster Companies, Inc. experienced a ransomware attack on August 22, 2020. Cybercriminals gained access to systems, potentially exposing names, addresses, Social Security numbers (W-9), and tax information (Form 1099). The company engaged cybersecurity experts and the FBI. No indication that data was accessed or viewed. Affected individuals are offered 24 months of identity protection. This is a supplemental notice.
California clockDiscovered Aug 22, 2020 → Notified Dec 1, 2020101d ✗ CA 60-day late14 weeks discovery → filing
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_0e4f7cc333861c24Delaware State AGfiled 2020-12-01Verified
- bd_59c056781148cbf2Maine State AGfiled 2020-12-01Verified
- bd_766e0953ceaa327cMaine State AGfiled 2020-09-16(76d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-196639
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 1, 2020
- Raw hash
- 459f85ace7b0f9ff36fed9cd0dccd944eacf9c8578e98c5dfd2b9f274e566dba
Reporting entity
- Name
- The Long & Foster Companies, Inc.norm: the long foster companies
Victim entity
- Name
- The Long & Foster Companies, Inc.norm: the long foster companies
Incident
- Discovered
- Aug 22, 2020
- Materiality determined
- —
- Notification sent
- Dec 1, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified the FBINotifying certain state regulators and consumer reporting agencies
Compliance
- Time to disclose
- 14 weeks(101 days from discovery to filing)
- Compliance flags
- CA 60-day late · 101d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Aug 22, 2020→ Notified: Dec 1, 2020101d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.