HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
SITUSAMC HOLDINGS CORPORATION
bd_dcf64a81d6209b11 · schema v1 · pii pii-v1
Full breach record for SITUSAMC HOLDINGS CORPORATION →SitusAMC Holdings Corporation notified the California Attorney General of unauthorized access to its IT network between November 12-19, 2025. An external actor acquired data including names, addresses, dates of birth, and Social Security numbers. The company engaged third-party experts, notified law enforcement, and contained the incident. Identity theft protection services are being offered to affected individuals.
California clockDiscovered Nov 12, 2025 → Notified Jan 28, 202677d ✗ CA 60-day late11 weeks discovery → filing
This filing is one of 13 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- bd_6a4691fada8d391eCalifornia State AGfiled 2026-02-20(23d gap)Verified
- bd_7916a021a8a6b3d5Washington State AGfiled 2026-02-20(23d gap)Verified
- bd_70a785f4cf612d8cIndiana State AGfiled 2026-03-10(41d gap)Verified
- bd_8485960cdfce7d6cIndiana State AGfiled 2026-03-10(41d gap)Verified
Show 6 more filings ↓Show fewer ↑up to 68d gap
- bd_c52f9d050e7058e1California State AGfiled 2026-03-10(41d gap)Verified
- bd_0cbe44e43d4d6e6fOregon State AGfiled 2026-03-23(54d gap)Verified by operator
- bd_9fd5d288eb9921f4California State AGfiled 2026-04-03(65d gap)Verified
- bd_e18d1724ef30fa6fMaine State AGfiled 2026-04-03(65d gap)Verified
- bd_4b06c2519a61551fTexas State AGfiled 2026-04-06(68d gap)Verified
- bd_75b585487f6fa356New Hampshire State AGfiled 2026-04-06(68d gap)Verified
Showing first 10 of 12 linked disclosures.
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-617785
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 28, 2026
- Raw hash
- d35e78d8d6857bd16ddaf7238f496cb3e94371c22fad44508b7b546f2a895658
Reporting entity
- Name
- SITUSAMC HOLDINGS CORPORATIONnorm: situsamc holdings
- Domain
- situsamc.com
Victim entity
- Name
- SITUSAMC HOLDINGS CORPORATIONnorm: situsamc holdings
- Domain
- situsamc.com
Incident
- Discovered
- Nov 12, 2025
- Materiality determined
- —
- Notification sent
- Jan 28, 2026
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified certain law enforcement and governmental authorities
Compliance
- Time to disclose
- 11 weeks(77 days from discovery to filing)
- Compliance flags
- CA 60-day late · 77dCA AG copy ≤15d · 0d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Nov 12, 2025→ Notified: Jan 28, 202677d 60 days (analyst band, pre-2026 discoveries) CA 60-day late California Consumers notified: Jan 28, 2026→ AG copy submitted: Jan 28, 20260d 15 calendar days CA AG copy ≤15d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.