MisusePrivilege AbuseCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICEMPLOYMENTMINORMediumResolved
County of Orange Social Services Agency
bd_88d3bb33c59ead4f · schema v1 · pii pii-v1
Full breach record for County of Orange Social Services Agency →County of Orange Social Services Agency (OCSSA) reported an insider threat incident discovered in April 2018. A former employee inappropriately accessed sensitive personal information of clients and families, including SSNs, medical records, and financial documents. The employee's access was deactivated, and they were separated from the agency. OCSSA is offering one year of credit monitoring to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-540834
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 13, 2021
- Raw hash
- 75d42452168b9eef3f8b129e82fbf2d751a699876f63e8fe905a88c4802216f4
Reporting entity
- Name
- County of Orange Social Services Agencynorm: county of orange social services agency
- Domain
- ssa.ocgov.com
Victim entity
- Name
- County of Orange Social Services Agencynorm: county of orange social services agency
- Domain
- ssa.ocgov.com
Incident
- Discovered
- Apr 1, 2018
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICEMPLOYMENTMINOR
- Attack vector
- Insider
- Threat actor
- Internal
- Initial access
- insider_action
Compliance
- Time to disclose
- 38 months(1138 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.