HackingStolen CredentialsSupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
LexisNexis Risk Solutions FL Inc.
bd_ced5697bc37fc2a2 · schema v1 · pii pii-v1
Full breach record for LexisNexis Risk Solutions FL Inc. →LexisNexis Risk Solutions notified consumers that an unauthorized third party acquired certain data from a third-party software development platform on December 25, 2024. The company discovered the issue on April 1, 2025. Affected data may include names, contact information, Social Security numbers, driver's license numbers, or dates of birth. No financial or credit card information was compromised. The company engaged external cybersecurity experts, notified law enforcement, and is offering two years of complimentary identity protection and credit monitoring.
California clockDiscovered Apr 1, 2025 → Notified May 2, 202531d ✓ CA 60-day OK8 weeks discovery → filing
This filing is one of 10 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (9) · sorted by filing gap
- bd_4413fe448ba35c9bDelaware State AGfiled 2025-05-27Verified
- bd_874be2d9e470eb61Iowa State AGfiled 2025-05-27Verified
- bd_891c8737c641bcd8Indiana State AGfiled 2025-05-27Verified
- bd_96a04b3d6a7fc23aVermont State AGfiled 2025-05-27Verified
Show 5 more filings ↓Show fewer ↑up to 3d gap
- bd_be8597c23ebbae7fMaine State AGfiled 2025-05-27Verified
- bd_c8c3e187e131b40aOregon State AGfiled 2025-05-27Verified
- bd_c925d9f511ff1bd7Washington State AGfiled 2025-05-27Verified
- bd_40896502a4103e00Texas State AGfiled 2025-05-29(2d gap)Verified
- bd_1fd87ad096eadf31Montana State AGfiled 2025-05-24(3d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-603219
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 27, 2025
- Raw hash
- 6c02a2f9a79e302a95dc6c2ae129522a543712825190579dca8f6e3d6df7ecf6
Reporting entity
- Name
- LexisNexis Risk Solutions FL Inc.norm: lexisnexis risk solutions fl
- Domain
- risk.lexisnexis.com
Victim entity
- Name
- LexisNexis Risk Solutions FL Inc.norm: lexisnexis risk solutions fl
- Domain
- risk.lexisnexis.com
Incident
- Discovered
- Apr 1, 2025
- Materiality determined
- —
- Notification sent
- May 2, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- External
- Initial access
- supply_chain
Compliance
- Time to disclose
- 8 weeks(56 days from discovery to filing)
- Compliance flags
- CA 60-day OK · 31d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Apr 1, 2025→ Notified: May 2, 202531d 60 days (analyst band, pre-2026 discoveries) CA 60-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.