MalwareRansomwareData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
CLEAR SPRING LIFE AND ANNUITY COMPANY
bd_93aa52da49699337 · schema v1 · pii pii-v1
Full breach record for CLEAR SPRING LIFE AND ANNUITY COMPANY →Clear Spring Life and Annuity Insurance Company experienced a ransomware attack. The California OAG form lists the breach date as November 30, 2022. The company discovered sophisticated ransomware on February 9, 2023. An unauthorized actor accessed and acquired files containing names, addresses, dates of birth, and Social Security numbers of policyholders and agents. The company engaged forensic investigators, notified the FBI, and is offering 24 months of identity protection services.
California clockDiscovered Feb 9, 2023 → Notified Nov 21, 2023285d ✗ CA 60-day late41 weeks discovery → filing
This filing is one of 8 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- bd_438eed640d65eb66Oregon State AGfiled 2023-11-21Verified
- bd_e794c69d4eb74adaCalifornia State AGfiled 2023-11-21Verified
- bd_562bfc8b2b4e7672Vermont State AGfiled 2023-07-28(116d gap)Verified
- bd_5e61e7a7d8f25a37Washington State AGfiled 2023-07-28(116d gap)Verified
Show 3 more filings ↓Show fewer ↑up to 117d gap
- bd_6c605cbed2da15faOregon State AGfiled 2023-07-28(116d gap)Verified
- bd_c2598206d5a6fc7eCalifornia State AGfiled 2023-07-28(116d gap)Verified
- bd_e442a82652e5886fMaine State AGfiled 2023-07-27(117d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-576839
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 21, 2023
- Raw hash
- 727ce5c9c79fbe975e203faa13e9d428c438e0a26e6a37af943fec4016d92fb5
Reporting entity
- Name
- CLEAR SPRING LIFE AND ANNUITY COMPANYnorm: clear spring life and annuity
Victim entity
- Name
- CLEAR SPRING LIFE AND ANNUITY COMPANYnorm: clear spring life and annuity
Incident
- Discovered
- Feb 9, 2023
- Materiality determined
- —
- Notification sent
- Nov 21, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Alerted appropriate regulatory authoritiesAlerted the Federal Bureau of Investigation
Compliance
- Time to disclose
- 41 weeks(285 days from discovery to filing)
- Compliance flags
- CA 60-day late · 285d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Feb 9, 2023→ Notified: Nov 21, 2023285d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.