Centinela Valley Union High School District

Centinela Valley Union High School District

Centinela Valley Union High School District learned that one of their employees received a phishing email designed to appear as if it came from one of their other employees.

Upon discovery, they immediately began an investigation to determine the scope of the incident and to verify what information have been affected.

As a result of this phishing incident, an unauthorized individual may have obtained IRS Form W-2 information for their employees.

The information compromised includes employee names, addresses, Social Security numbers, and 2018 wage information.

Source: https://www.databreaches.net/centinela-valley-union-high-school-district-notifies-employees-of-w-2-phishing-incident/

TPRM report: https://scoringcyber.rankiteo.com/company/centinela-valley-union-high-school-district

"id": "cen143118223",
"linkid": "centinela-valley-union-high-school-district",
"type": "Data Leak",
"date": "02/2019",
"severity": "60",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'industry': 'Education',
                        'name': 'Centinela Valley Union High School District',
                        'type': 'Educational Institution'}],
 'attack_vector': 'Email',
 'data_breach': {'file_types_exposed': ['IRS Form W-2'],
                 'personally_identifiable_information': ['Employee names',
                                                         'Addresses',
                                                         'Social Security '
                                                         'numbers',
                                                         '2018 wage '
                                                         'information'],
                 'sensitivity_of_data': 'High',
                 'type_of_data_compromised': ['Personally Identifiable '
                                              'Information',
                                              'Employment Information']},
 'description': 'Centinela Valley Union High School District discovered a '
                'phishing incident where an unauthorized individual may have '
                'obtained IRS Form W-2 information for their employees.',
 'impact': {'data_compromised': ['Employee names',
                                 'Addresses',
                                 'Social Security numbers',
                                 '2018 wage information']},
 'initial_access_broker': {'entry_point': 'Phishing Email'},
 'investigation_status': 'Ongoing',
 'motivation': 'Data theft',
 'post_incident_analysis': {'root_causes': 'Phishing Email'},
 'threat_actor': 'Unauthorized individual',
 'title': 'Phishing Incident at Centinela Valley Union High School District',
 'type': 'Phishing',
 'vulnerability_exploited': 'Human (phishing)'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.