MalwareRansomwareStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICLowContained
Aspen Logon
bd_e4f4fee341eb2460 · schema v1 · pii pii-v1
Full breach record for Aspen Logon →Aspen Education Group, Inc. notified the California Attorney General of a data breach occurring on December 13, 2020. An unauthorized actor gained access to the network, deployed malware, and exfiltrated documents containing names, addresses, and dates of birth of individuals who had inquired about programs. The company engaged forensic investigators, secured the network, and offered one year of identity monitoring services to affected individuals.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_2081fad577584ba6Oregon State AGfiled 2021-05-10Candidate
- bd_34744afa1ba66078Washington State AGfiled 2021-05-10Verified
- bd_4648cad644e44e50Montana State AGfiled 2021-05-10Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-540717
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 10, 2021
- Raw hash
- 6d49d269b14d61855883bfbc765c5522c7b5bcf82ba94b0fef054d7bcfc06990
Reporting entity
- Name
- Aspen Logonnorm: aspen logon
Victim entity
- Name
- Aspen Logonnorm: aspen logon
Incident
- Discovered
- Dec 13, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- External
Compliance
- Time to disclose
- 21 weeks(148 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.