MalwareIDENTITY_BASICIDENTITY_GOVERNMENTCREDENTIALSHighContained
Estrella Franchising, LLC
bd_f03d024fde018a94 · schema v1 · pii pii-v1
Full breach record for Estrella Franchising, LLC →Estrella Franchising, LLC d/b/a Estrella Insurance reported a ransomware incident detected on January 22, 2025, impacting approximately 16,379 individuals, including 8 Maryland residents. Affected data included names, contact info, SSNs, driver's license numbers, and online account credentials. Estrella reset passwords, restored backups, engaged forensic experts, and notified law enforcement. Affected individuals received 24 months of Experian IdentityWorks services.
Maryland clock⏱ MD AG >30d6 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_c4ee8fadef7f2ce9Indiana State AGfiled 2025-03-03Verified
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376471.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 3, 2025
- Raw hash
- cb1f8c535d7ce5c7b07f1eae9c1844597c1b81f9915d4f1d3d301923aca5a96a
Reporting entity
- Name
- Estrella Franchising, LLCnorm: estrella franchising
Victim entity
- Name
- Estrella Franchising, LLCnorm: estrella franchising
Incident
- Discovered
- Jan 22, 2025
- Materiality determined
- —
- Notification sent
- Mar 3, 2025
- Affected individuals
- 16,379
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTCREDENTIALS
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified law enforcement and is cooperating with their investigation
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 6 weeks(40 days from discovery to filing)
- Compliance flags
- MD AG >30d
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.