HackingStolen CredentialsCustomer Data InvolvedPIIIDENTITY_BASICLowContained
States Logistics Services, Inc.
bd_eeca5a2ba981ef20 · schema v1 · pii pii-v1
Full breach record for States Logistics Services, Inc. →States Logistics Services, Inc. reported that an unauthorized actor accessed an employee's email account for approximately one hour on August 30, 2019. The company became aware of unusual activity on that date and engaged a third-party forensic investigator. A subsequent review determined that some customers' personal information was present in the email at the time of the incident. The company reset passwords, notified law enforcement and regulators, and offered 12 months of identity monitoring to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-185572
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 3, 2020
- Raw hash
- 5650307421170bc1869f980292a6d67b5efb6883a9c6b3c0f35be46843297938
Reporting entity
- Name
- States Logistics Services, Inc.norm: states logistics
Victim entity
- Name
- States Logistics Services, Inc.norm: states logistics
Incident
- Discovered
- Aug 30, 2019
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Regulator citations
- Notifying relevant state and federal regulators
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 18 weeks(126 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.