HackingData ExfiltratedCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICCREDENTIALSHighActive
Zoosk, Inc.
bd_a6b98a214f2ef77a · schema v1 · pii pii-v1
Full breach record for Zoosk, Inc. →Zoosk, Inc. reported a data breach affecting approximately 560,138 California residents. An unauthorized third party accessed user profile data (name, email, DOB, demographics, and potentially passwords) stored in a third-party-hosted database around January 12, 2020. The breach was discovered on May 11, 2020. Zoosk engaged forensic specialists, notified law enforcement, and began notifying affected users via email on June 3, 2020. No financial or government ID data was involved.
California clockDiscovered May 11, 2020 → Notified Jun 3, 202023d ✓ CA 60-day OK4 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_496bee33a76a0499Oregon State AGfiled 2020-06-11Verified
- bd_40aaf6755c696b58Washington State AGfiled 2020-06-10(1d gap)Candidate
- bd_55917fefd56d6a2aDelaware State AGfiled 2020-06-03(8d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-190811
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 11, 2020
- Raw hash
- 39da081c6f5c0b590e049aa0aa7b83c97553a0be186bb38dfcd8ee9edb1cb9b0
Reporting entity
- Name
- Zoosk, Inc.norm: zoosk
Victim entity
- Name
- Zoosk, Inc.norm: zoosk
Incident
- Discovered
- May 11, 2020
- Materiality determined
- —
- Notification sent
- Jun 3, 2020
- Affected individuals
- 560,138
- Data types
- IDENTITY_BASICCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- Notified California Attorney General's office
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 4 weeks(31 days from discovery to filing)
- Compliance flags
- CA 60-day OK · 23d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: May 11, 2020→ Notified: Jun 3, 202023d 60 days (analyst band, pre-2026 discoveries) CA 60-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.