ClubSport San Ramon and Oakwood Athletic Club

ClubSport San Ramon and Oakwood Athletic Club

The California Office of the Attorney General reported a data breach involving ClubSport San Ramon and Oakwood Athletic Club on November 16, 2017. The breach occurred on July 31, 2017, when an employee was targeted by a phishing attack, resulting in the unauthorized disclosure of personal information including names, Social Security numbers, and W-2 information of individuals affected, though financial account details were not compromised.

Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-110719

TPRM report: https://www.rankiteo.com/company/clubsport-san-ramon

"id": "clu326072525",
"linkid": "clubsport-san-ramon",
"type": "Breach",
"date": "7/2017",
"severity": "60",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'industry': 'Health and Fitness',
                        'location': 'San Ramon, CA',
                        'name': 'ClubSport San Ramon',
                        'type': 'Fitness Club'},
                       {'industry': 'Health and Fitness',
                        'name': 'Oakwood Athletic Club',
                        'type': 'Fitness Club'}],
 'attack_vector': 'Phishing',
 'data_breach': {'personally_identifiable_information': True,
                 'sensitivity_of_data': 'High',
                 'type_of_data_compromised': ['Names',
                                              'Social Security numbers',
                                              'W-2 information']},
 'date_detected': '2017-11-16',
 'date_publicly_disclosed': '2017-11-16',
 'description': 'The California Office of the Attorney General reported a data '
                'breach involving ClubSport San Ramon and Oakwood Athletic '
                'Club on November 16, 2017. The breach occurred on July 31, '
                '2017, when an employee was targeted by a phishing attack, '
                'resulting in the unauthorized disclosure of personal '
                'information including names, Social Security numbers, and W-2 '
                'information of individuals affected, though financial account '
                'details were not compromised.',
 'impact': {'data_compromised': ['Names',
                                 'Social Security numbers',
                                 'W-2 information']},
 'initial_access_broker': {'entry_point': 'Phishing Email'},
 'post_incident_analysis': {'root_causes': 'Phishing attack targeting an '
                                           'employee'},
 'references': [{'date_accessed': '2017-11-16',
                 'source': 'California Office of the Attorney General'}],
 'title': 'Data Breach at ClubSport San Ramon and Oakwood Athletic Club',
 'type': 'Data Breach',
 'vulnerability_exploited': 'Human Error'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.