HackingCustomer Data InvolvedPIIIDENTITY_BASICLowContained
San Luis Obispo County YMCA
bd_ef68ccaa9e1057c2 · schema v1 · pii pii-v1
Full breach record for San Luis Obispo County YMCA →San Luis Obispo County YMCA reported a cyber-attack on July 19, 2021, where an unauthorized actor gained access to limited portions of its network. The investigation could not rule out access to data, but found no evidence of exfiltration. Affected individuals' names and other basic identity information were potentially accessed. The organization secured systems, investigated the scope, and offered one year of credit and identity monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-547503
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 12, 2021
- Raw hash
- 3ce3c95bdbd7ab18c55b08f93a965ef8a5345825800f2d1c8b1e60effa8825e0
Reporting entity
- Name
- San Luis Obispo County YMCAnorm: san luis obispo county ymca
Victim entity
- Name
- San Luis Obispo County YMCAnorm: san luis obispo county ymca
Incident
- Discovered
- Jul 19, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Contacted the authorities
Compliance
- Time to disclose
- 17 weeks(116 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.