HackingData ExfiltratedCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICLowResolved
EISNER ADVISORY GROUP LLC
bd_ed6f19b468a372e9 · schema v1 · pii pii-v1
Full breach record for EISNER ADVISORY GROUP LLC →Eisner Advisory Group LLC notified the California Attorney General of an incident where an unknown actor gained unauthorized access to files between September 4 and September 9, 2023. The company became aware of suspicious activity in September 2023. In February 2025, the company completed its review and determined that affected individuals' names and other personal information were involved. The investigation is concluded. The company notified regulators and law enforcement and is offering credit monitoring services.
California clockDiscovered Sep 1, 2023 → Notified Apr 8, 2025585d ✗ CA 60-day late20 months discovery → filing
This filing is one of 8 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- bd_0e87a3f3a7019a00Vermont State AGfiled 2025-04-08Verified
- bd_27e512fd0cdac557New Hampshire State AGfiled 2025-04-08Verified
- bd_61c9ad8db06a18a3Washington State AGfiled 2025-04-08Candidate
- bd_9c143312e5d526b8Iowa State AGfiled 2025-04-08Verified
Show 3 more filings ↓Show fewer ↑
- bd_bd4df5a263203c7dOregon State AGfiled 2025-04-08Verified
- bd_e35702ee8e886a3fMontana State AGfiled 2025-04-08Verified
- bd_ea112341cfa5a4d9Indiana State AGfiled 2025-04-08Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-601126
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 8, 2025
- Raw hash
- 99bf8563aee558749182b633893596a5641af227294329d895509ca2a41026e1
Reporting entity
- Name
- EISNER ADVISORY GROUP LLCnorm: eisner advisory
Victim entity
- Name
- EISNER ADVISORY GROUP LLCnorm: eisner advisory
Incident
- Discovered
- Sep 1, 2023
- Materiality determined
- —
- Notification sent
- Apr 8, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified state and industry regulators as required
Compliance
- Time to disclose
- 20 months(585 days from discovery to filing)
- Compliance flags
- CA 60-day late · 585d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Sep 1, 2023→ Notified: Apr 8, 2025585d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.