Hackers used stolen passwords to access thousands of BenefitsCal accounts
Briefly

On Feb. 9, BenefitsCal discovered unauthorized access to the portal between March 1, 2023 and Feb. 13, 2024, with stolen login information, and notified affected users via a letter on March 26.
The breach exposed users' sensitive data such as name, address, SSN, email, phone number, EBT card number, case number, and program eligibility details, prompting notification of 19,027 users.
BenefitsCal introduced two-step verification post-breach, requiring a one-time code sent to users' email or phone for system access, as informed by Department of Social Services' spokeswoman.
Read at Sacramento Bee
[
add
]
[
|
|
]