Social EngineeringPhishingStolen CredentialsCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTCREDENTIALSMediumContained
Altice USA, Inc.
bd_c5b245d7b3a5aed9 · schema v1 · pii pii-v1
Full breach record for Altice USA, Inc. →Altice USA, Inc. reported a November 2019 phishing incident where unauthorized third parties stole employee email credentials to access mailboxes. Downloaded mailboxes contained reports with PII (names, SSNs, DOBs, driver's licenses) of employees and customers. Altice USA engaged forensic investigators, notified law enforcement, reset passwords, and provided credit monitoring.
California clockDiscovered Nov 4, 2019 → Notified Jan 20, 202077d ✗ CA 60-day late13 weeks discovery → filing
⚠ AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_814aa050fb075bd7Montana State AGfiled 2020-02-06Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-187076
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 6, 2020
- Raw hash
- 9d71201c8f6a407e7048c7f2f2f9e5b1cd9d0927eb87b5d4227ad3dcac100d3f
Reporting entity
- Name
- Altice USA, Inc.norm: altice usa
Victim entity
- Name
- Altice USA, Inc.norm: altice usa
Incident
- Discovered
- Nov 4, 2019
- Materiality determined
- —
- Notification sent
- Jan 20, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTCREDENTIALS
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified federal law enforcement agencies
- Initial access
- phishing_link
Compliance
- Time to disclose
- 13 weeks(94 days from discovery to filing)
- Compliance flags
- CA 60-day late · 77d
- Discovery-date grounding
- AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Nov 4, 2019→ Notified: Jan 20, 202077d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.