HackingStolen CredentialsSupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
City of Oxnard
bd_b93c840f8fe18ecd · schema v1 · pii pii-v1
Full breach record for City of Oxnard →The City of Thousand Oaks notified residents of a data breach involving its third-party payment processing vendor, Click2 Gov. Between January 4 and 10, 2018, an unauthorized individual accessed a computer used to process credit card transactions, potentially exposing names, payment card numbers, and expiration dates. The City engaged forensic investigators and enhanced security protocols.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-135006
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 3, 2018
- Raw hash
- b7b2f094a738165ff47f71f81f1a9ee9ef5579201bdb09f614fd0680568debc9
Reporting entity
- Name
- City of Oxnardnorm: city of oxnard
Victim entity
- Name
- City of Oxnardnorm: city of oxnard
Incident
- Discovered
- Feb 28, 2018
- Materiality determined
- Apr 2, 2018
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 5 weeks(34 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.