DisclosureLens
HackingProfessional ServicesProfessional ServicesSupply Chain (3P Vendor)Customer Data InvolvedPIIIdentity (basic)LowContained

Porter & Curtis, LLC

bd_f436f3bdfde8db40 · schema v1 · pii pii-v1

Severity

Low

Discovered

Mar 1, 2020

Filed

Feb 2, 2021

To disclose

48 weeks

Affected

Not disclosed

Linked

4 filings

Confidence

65%
Full breach record for Porter & Curtis, LLC

Porter & Curtis LLC notified the California Attorney General of a data breach affecting customer information. The incident originated from a cyber incident at a business partner, resulting in unauthorized access to Porter & Curtis data between February 12 and March 18, 2020. The company became aware of the incident in March 2020. Affected data may include personal information such as names and addresses. Porter & Curtis engaged cybersecurity firms, reported the incident to the FBI, and offered credit monitoring services to affected individuals.

Incident timeline

undetected · 18 days
discovery → filing · 48 weeks / 338 days

Feb 12, 2020

Begins

Mar 1, 2020

Discovered

Feb 2, 2021

Filed

vs. sector median

+31 wks slower

This filing is one of 4 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (3) · sorted by filing gap

Filing propagation · 4 filings · 4 states

View merged incident ↗
Indiana State AGJan 29 · first
California State AG+4d · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.