HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Creative Services, Inc.
bd_fa6006624ab4fa0c · schema v1 · pii pii-v1
Full breach record for Creative Services, Inc. →Creative Services, Inc. notified individuals of a cyber-attack on November 23, 2021, where files containing names, dates of birth, Social Security numbers, and driver's license numbers were potentially copied. The company engaged third-party forensic specialists, secured systems, and offered credit monitoring and identity theft restoration services to affected individuals across multiple states.
This filing is one of 10 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (9) · sorted by filing gap
- bd_1be64c03d8c522bdMaine State AGfiled 2022-02-23Verified
- bd_737a9c0214d5b59eMontana State AGfiled 2022-02-23Verified
- bd_750ed45764cbfacfSouth Carolina State AGfiled 2022-02-24(1d gap)Verified
- bd_46b3db9060c7d4b6New Hampshire State AGfiled 2022-02-28(5d gap)Verified
Show 5 more filings ↓Show fewer ↑up to 58d gap
- bd_512e294023a08ef7New Hampshire State AGfiled 2022-02-07(16d gap)Verified
- bd_5b7645ca55904b9fMaine State AGfiled 2022-02-01(22d gap)Candidate
- bd_361b96baa57efa2bMaine State AGfiled 2022-04-18(54d gap)Verified
- bd_3c3b61d1f85192c6California State AGfiled 2022-04-18(54d gap)Verified
- bd_57dcbca496f5c717New Hampshire State AGfiled 2022-04-22(58d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-551180
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 23, 2022
- Raw hash
- 3810ca93a5cb3741df01d859883aa3fef735961ff6c8250d5627b44562c34318
Reporting entity
- Name
- Creative Services, Inc.norm: creative services
- Domain
- creativeservices.com
Victim entity
- Name
- Creative Services, Inc.norm: creative services
- Domain
- creativeservices.com
Incident
- Discovered
- Nov 26, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1119 Automated Collection
- Threat actor
- External
Compliance
- Time to disclose
- 13 weeks(89 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.