MalwareRansomwareStolen CredentialsData EncryptedData ExfiltratedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENTMediumContained
City of Oakland
bd_fc56c4b9ebdf1c0d · schema v1 · pii pii-v1
Full breach record for City of Oakland →The City of Oakland experienced a ransomware incident on February 8, 2023, where malware encrypted systems. An unauthorized actor accessed and exfiltrated employee personal information (names, addresses, SSNs, driver's license numbers) between February 6 and February 9, 2023. The city secured its network, engaged forensic investigators, and offered identity protection services to affected employees.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-564385
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 15, 2023
- Raw hash
- f4768c30e00107c0a481f26333cec365bdae3083fae3b39d55b1886f3db59247
Reporting entity
- Name
- City of Oaklandnorm: city of oakland
Victim entity
- Name
- City of Oaklandnorm: city of oakland
Incident
- Discovered
- Feb 8, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- External
Compliance
- Time to disclose
- 5 weeks(35 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.