PhysicalTheftCustomer Data InvolvedEmployee Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICEDUCATIONPIIMediumContained
University of California
bd_875e7e2986d57e10 · schema v1 · pii pii-v1
Full breach record for University of California →University of California Santa Cruz reported the theft of two unencrypted laptops from a researcher's home on January 13, 2017. The laptops contained student narrative evaluations from 2000-2004, including names, Social Security Numbers (used as Student IDs), grades, and email addresses. UC Santa Cruz filed a police report and offered identity theft protection services to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-66636
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 2, 2017
- Raw hash
- 20781ac478584536442479b13a59af9dc97138029ec9b41fa7ead363f1c4dcb9
Reporting entity
- Name
- University of California, Santa Cruznorm: university of california santa cruz
- Domain
- goslugs.com
Victim entity
- Name
- University of Californianorm: university of california
- Domain
- admission.universityofcalifornia.edu
Incident
- Discovered
- Jan 13, 2017
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICEDUCATIONPII
- Attack vector
- Unknown
- MITRE ATT&CK
- T1052 Exfiltration Over Physical Medium
- Threat actor
- External
Compliance
- Time to disclose
- 7 weeks(48 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.