HackingData ExfiltratedCustomer Data InvolvedSupply Chain (3P Vendor)EDUCATIONIDENTITY_BASICHEALTH_BASICMINORMediumContained
Saddleback Valley Unified School District
bd_edfa1b991ddfa88b · schema v1 · pii pii-v1
Full breach record for Saddleback Valley Unified School District →Illuminate Education, a technology provider for schools, notified Orange Unified School District of a data security incident. Unauthorized access occurred between December 28, 2021, and January 8, 2022. The incident involved student data including names, academic records, and special education information. No SSNs or financial data were compromised. Illuminate contained the breach and offered credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-580268
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 31, 2024
- Raw hash
- c92e1878e3b854a8dc8b8dcb2666152bed52938af20d7af736f78390a4fc546c
Reporting entity
- Name
- Amplify Education, Inc.norm: amplify education
Victim entity
- Name
- Saddleback Valley Unified School Districtnorm: saddleback valley unified school district
Incident
- Discovered
- Jan 8, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- EDUCATIONIDENTITY_BASICHEALTH_BASICMINOR
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Third party
- via Illuminate Education, Inc.
Compliance
- Time to disclose
- 25 months(753 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.