HackingEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
The Roman Catholic Diocese of Phoenix
bd_f9030ecfd1c54da9 · schema v1 · pii pii-v1
Full breach record for The Roman Catholic Diocese of Phoenix →The Roman Catholic Diocese of Phoenix discovered unauthorized access to its network on January 17, 2024. An external actor accessed files containing names, addresses, dates of birth, and Social Security numbers of participants in employee benefits programs. The Diocese engaged forensic investigators, secured the network, and is offering credit monitoring to affected individuals. No financial data was compromised.
California clockDiscovered Jan 17, 2024 → Notified Apr 15, 202489d ✗ CA 60-day late13 weeks discovery → filing
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_b4e501101f035004Indiana State AGfiled 2024-04-15Verified
- bd_55a46e7d1faaf1e0Maine State AGfiled 2024-04-16(1d gap)Verified
- bd_c450077dfa735ee8Montana State AGfiled 2024-04-16(1d gap)Verified
- bd_d755e9932593eaf0New Hampshire State AGfiled 2024-04-16(1d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-583964
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 15, 2024
- Raw hash
- 6a76663256d90ce1e56d98f5b917b5c359472465c503fbb4f594be67a0b61cde
Reporting entity
- Name
- The Roman Catholic Diocese of Phoenixnorm: the roman catholic diocese of phoenix
Victim entity
- Name
- The Roman Catholic Diocese of Phoenixnorm: the roman catholic diocese of phoenix
Incident
- Discovered
- Jan 17, 2024
- Materiality determined
- —
- Notification sent
- Apr 15, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
Compliance
- Time to disclose
- 13 weeks(89 days from discovery to filing)
- Compliance flags
- CA 60-day late · 89d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Jan 17, 2024→ Notified: Apr 15, 202489d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.