Sher Tremonte
bd_ad2c472c476110de · schema v1 · pii pii-v1
Full breach record for Sher Tremonte →Sher Tremonte LLP notified the California Attorney General of a data security incident. The breach occurred on March 12, 2025, and was discovered on March 25, 2025, when unusual activity was identified in the firm's email environment. The incident potentially exposed personal information including names, Social Security Numbers, Driver's License or State ID numbers, Passport Numbers, and usernames and passwords. The firm engaged cybersecurity experts, secured its network, and conducted a comprehensive review. Affected individuals are offered 12 months of complimentary credit monitoring and fraud assistance services.
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-610196
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 17, 2025
- Raw hash
- 95f2d4c8cb6805368feb89b2425ad347f32a0879f1034358b3255d42b73f7e7d
Reporting entity
- Name
- Sher Tremontenorm: sher tremonte
- Domain
- shertremonte.com
Victim entity
- Name
- Sher Tremontenorm: sher tremonte
- Domain
- shertremonte.com
Incident
- Discovered
- Mar 25, 2025
- Materiality determined
- —
- Notification sent
- Sep 15, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTCREDENTIALS
- Attack vector
- Unknown
- MITRE ATT&CK
- T1114 Email Collection
Compliance
- Time to disclose
- 25 weeks(176 days from discovery to filing)
- Compliance flags
- CA 60-day late · 174d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Mar 25, 2025→ Notified: Sep 15, 2025174d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.