HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICCREDENTIALSLowResolved
internalDrive, Inc.
bd_bfbedea8c47acf99 · schema v1 · pii pii-v1
Full breach record for internalDrive, Inc. →internalDrive, Inc. (operating as iD Tech) disclosed that an unknown actor accessed a limited portion of its data network and downloaded a file containing account usernames, emails, passwords, and dates of birth. The breach occurred on January 3, 2023, and was discovered in early March 2023. Physical addresses, financial, and medical information were not affected. The company secured the network, reset passwords, notified law enforcement, and implemented additional security measures.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-565157
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 5, 2023
- Raw hash
- cf48e2a25e0181c552472a4039b34bba69d17e40555972028c12214b8d289107
Reporting entity
- Name
- internalDrive, Inc.norm: internaldrive
- Domain
- idtech.com
Victim entity
- Name
- internalDrive, Inc.norm: internaldrive
- Domain
- idtech.com
Incident
- Discovered
- Mar 1, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Notified federal law enforcement
Compliance
- Time to disclose
- 5 weeks(35 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.