The California Office of the Attorney General disclosed a data breach involving Computer Sciences Corporation (CSC) on April 3, 2013. The incident stemmed from the loss of a thumb drive containing sensitive personal information, specifically names and Social Security Numbers (SSNs) of individuals. While the exact number of affected individuals remains unknown, the exposure of such data poses significant risks, including identity theft, financial fraud, and reputational harm to those impacted. The breach highlights vulnerabilities in physical data security controls, as the unencrypted or improperly secured storage device was misplaced or stolen. Given the nature of the compromised data SSNs being a prime target for cybercriminals the incident underscores the critical need for robust data encryption, access controls, and employee training to prevent similar occurrences. The breach did not involve a targeted cyber attack but rather a human error or negligence, leading to potential long-term consequences for affected individuals.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-40959
TPRM report: https://www.rankiteo.com/company/computer-sciences-corporation-csc
"id": "com1021090725",
"linkid": "computer-sciences-corporation-csc",
"type": "Breach",
"date": "2/2013",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 'Unknown',
'industry': 'Information Technology Services',
'location': 'California, USA',
'name': 'Computer Sciences Corporation (CSC)',
'type': 'Corporation'}],
'attack_vector': 'Lost/Stolen Device (Thumb Drive)',
'data_breach': {'number_of_records_exposed': 'Unknown',
'personally_identifiable_information': ['Names',
'Social Security '
'Numbers'],
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Personally Identifiable '
'Information (PII)']},
'date_publicly_disclosed': '2013-04-03',
'description': 'The California Office of the Attorney General reported a data '
'breach involving Computer Sciences Corporation (CSC) on April '
'3, 2013. The breach involved the loss of a thumb drive '
'containing personal information including names and Social '
'Security Numbers, but the specific number of individuals '
'affected is unknown.',
'impact': {'data_compromised': ['Names', 'Social Security Numbers'],
'identity_theft_risk': 'High (PII exposed)'},
'references': [{'source': 'California Office of the Attorney General'}],
'regulatory_compliance': {'regulatory_notifications': ['California Office of '
'the Attorney '
'General']},
'title': 'Data Breach at Computer Sciences Corporation (CSC) - 2013',
'type': 'Data Breach'}