UNIVERSITY OF SOUTHERN CALIFORNIA
ent_019e23205ffc3fd13647b4f113c9dc83
Disclosures
9
State AG · 4 jurisdictions
Incidents
2
filings grouped by incident
Max affected reported
7
as filed · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- UNIVERSITY OF SOUTHERN CALIFORNIA
- Normalized
- university of southern california— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 0GMCSQ6M60R4T46U5511
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (9)newest first
- ⛰️New Hampshire State AGas reporting2022-09-30
Conifer Revenue Cycle Solutions, LLC, a business associate of USC, experienced a data security incident involving unauthorized access to a Microsoft Office 365 business email account. The unauthorized access occurred on January 20, 2022, and was discovered by Conifer on April 14, 2022. USC was notified on August 12, 2022. The incident potentially exposed personal information of 7 New Hampshire residents, including names, SSNs, financial account numbers, and health information. Conifer reset passwords, blocked malicious IPs, and accelerated MFA implementation. IDX provided 12 months of identity protection services.
- ⛰️New Hampshire State AGas victim2022-05-06
University of Southern California (USC) notified the New Hampshire Attorney General on May 6, 2022, regarding a data incident involving a lost external hard drive. A professor misplaced the drive on or about September 28, 2021. USC discovered the loss on October 1, 2021. The drive contained academic records and Social Security numbers for one New Hampshire resident. No evidence of misappropriation was found. USC notified the individual on April 26, 2022, and offered identity protection services.
- 🐻California State AGas victim2022-05-05
University of Southern California (USC) notified individuals on April 26, 2022, regarding a data security incident occurring on September 28, 2021. A professor lost an external hard drive containing student academic information, including grade sheets and personal data. USC investigated, confirmed the loss, and provided complimentary identity theft protection services through IDX to affected individuals. No evidence of misuse was found.
- 🦞Maine State AGas victim2021-12-28
The University of Southern California experienced a data breach involving the loss or theft of a device, impacting one resident of Maine. The incident occurred on September 28, 2021, and was discovered on November 18, 2021. The compromised data included names and Social Security numbers. In response, the university offered 12 months of credit monitoring and identity protection services through IDX.
- 🐻California State AGas victim2021-12-22
University of Southern California notified affected individuals that a professor lost an external hard drive containing student academic information, including names and Social Security numbers. The incident occurred on September 28, 2021, and was discovered on October 1, 2021. No evidence of misuse was found. USC offered complimentary identity theft protection services.
- 🦬Montana State AGas victim2021-12-02
University of Southern California reported a data breach to the Montana Attorney General. The breach was reported on 2021-12-02. The breach occurred on 9/28/2021. 1 Montana residents were affected.
- 🐻California State AGas victim2021-05-13
University of California disclosed a data breach involving its Accellion File Transfer Appliance (FTA). The incident occurred on December 24, 2020, when attackers exploited a vulnerability in the application. Unauthorized access resulted in the exfiltration of personal information, including names, SSNs, driver's license info, passport info, financial account numbers, and health/benefit data. The breach was discovered on March 29, 2021, when data was found posted on the Internet. UC notified affected individuals, offered credit monitoring via Experian, and patched the vulnerability. The investigation is ongoing with FBI cooperation.
- 🐻California State AGas reporting2016-07-11
California Attorney General's Office data breach report (SB24-62772) filed by the University of Southern California on behalf of KUSC. The filing is a sample notification; specific details regarding the incident date, affected data types, or number of individuals are not provided in the source text.
- 🐻California State AGas victim2012-06-29
University of Southern California (USC) notified affected individuals on June 28, 2012, regarding a security breach at food outlets on its University Park and Health Sciences campuses. Between May 21 and June 21, 2012, a third-party software system processing credit card transactions was compromised, exposing credit card numbers. No personally identifiable information was compromised. USC disabled the system, engaged Ernst & Young for forensic investigation, and notified law enforcement.