California State University Northridge (CSUN) notified the California Attorney General of a data breach involving EOP student applicant records. On April 5, 2016, CSUN discovered that an ID and password were mistakenly published on an internal-facing staff webpage, potentially allowing unauthorized access to personal information including names, addresses, Social Security Numbers, email addresses, and phone numbers. CSUN immediately reconfigured the website and deactivated the credentials. No evidence of malicious hacking was found. Affected individuals were offered one year of complimentary identity protection services.