County of Los Angeles

County of Los Angeles

The California Office of the Attorney General reported a data breach involving the County of Los Angeles on December 16, 2016. The breach, which occurred on May 13, 2016, was due to a phishing email attack affecting approximately 108 out of 120,000 employee email accounts. The compromised information potentially included personal identifiable information (PII) such as names, dates of birth, Social Security numbers (SSN), and medical records.

Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-65499

TPRM report: https://www.rankiteo.com/company/los-angeles-county

"id": "los1027072725",
"linkid": "los-angeles-county",
"type": "Breach",
"date": "5/2016",
"severity": "60",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'industry': 'Public Administration',
                        'location': 'Los Angeles, California',
                        'name': 'County of Los Angeles',
                        'size': '120,000 employees',
                        'type': 'Government'}],
 'attack_vector': 'Phishing Email',
 'data_breach': {'number_of_records_exposed': '108',
                 'personally_identifiable_information': ['Names',
                                                         'Dates of Birth',
                                                         'Social Security '
                                                         'Numbers'],
                 'sensitivity_of_data': 'High',
                 'type_of_data_compromised': ['PII', 'Medical Records']},
 'date_detected': '2016-12-16',
 'date_publicly_disclosed': '2016-12-16',
 'description': 'The California Office of the Attorney General reported a data '
                'breach involving the County of Los Angeles on December 16, '
                '2016. The breach, which occurred on May 13, 2016, was due to '
                'a phishing email attack affecting approximately 108 out of '
                '120,000 employee email accounts. The compromised information '
                'potentially included personal identifiable information (PII) '
                'such as names, dates of birth, Social Security numbers (SSN), '
                'and medical records.',
 'impact': {'data_compromised': ['PII', 'Medical Records']},
 'initial_access_broker': {'entry_point': 'Phishing Email'},
 'references': [{'date_accessed': '2016-12-16',
                 'source': 'California Office of the Attorney General'}],
 'title': 'Data Breach at County of Los Angeles',
 'type': 'Data Breach'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.