HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
AIS Inc
bd_ac840f7499b9ded1 · schema v1 · pii pii-v1
Full breach record for AIS Inc →AIS InfoSource LP reported unauthorized access to its network occurring between February 16 and 21, 2025, discovered on February 17, 2025. An external actor gained access and exfiltrated a limited subset of data including names, Social Security Numbers, and financial account information. AIS engaged forensic specialists, secured the network, and is offering credit monitoring to affected individuals. Notices were sent starting July 9, 2025.
California clockDiscovered Feb 17, 2025 → Notified Jul 9, 2025142d ✗ CA 60-day late22 weeks discovery → filing
This filing is one of 9 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- bd_0504c046ba35e9a6New Hampshire State AGfiled 2025-07-21Verified
- bd_1953d698d62e8e4dVermont State AGfiled 2025-06-30(21d gap)Verified
- bd_75bd756c8f7a12aeCalifornia State AGfiled 2025-06-30(21d gap)Verified
- bd_c2fcdb77a103f364New Hampshire State AGfiled 2025-06-30(21d gap)Verified
Show 4 more filings ↓Show fewer ↑up to 45d gap
- bd_ef63887c32401b4eIndiana State AGfiled 2025-06-30(21d gap)Verified
- bd_12b45644bcfa9d13Montana State AGfiled 2025-08-29(39d gap)Candidate
- bd_7cff3a58df38cce4California State AGfiled 2025-08-29(39d gap)Verified
- bd_545aa9b9cb26e2a4Texas State AGfiled 2025-09-04(45d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-605868
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 21, 2025
- Raw hash
- 4328122a4a2f22df9814dde2ac1b2f5d872b752bfd2f5d45db188f8d04114cbf
Reporting entity
- Name
- AIS Incnorm: ais
- Domain
- ais-inc.com
Victim entity
- Name
- AIS Incnorm: ais
- Domain
- ais-inc.com
Incident
- Discovered
- Feb 17, 2025
- Materiality determined
- —
- Notification sent
- Jul 9, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- External
Compliance
- Time to disclose
- 22 weeks(154 days from discovery to filing)
- Compliance flags
- CA 60-day late · 142d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Feb 17, 2025→ Notified: Jul 9, 2025142d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.