The letter from USA DeBusk LLC has arrived. It confirms that your personal information was included in a data breach the company reported to the California Attorney General. No passwords, no login credentials, and no government identifiers such as Social Security numbers were exposed. The filing lists names, addresses, dates of birth, and other personal details as the categories involved. The exact number of California residents affected has not been disclosed.
This means the information now potentially available to unauthorized parties is the kind that lasts for decades. A date of birth combined with your name and address does not expire the way a credit card does. It can be used to build synthetic identities, support fraudulent loan applications, or strengthen phishing attempts that already feel personal because they contain details only you and your service provider should know.
What the Exposed Personal Information Actually Enables
When a breach contains your name, address, and date of birth together, the risk is not immediate account takeover. It is long-term identity fraud. Criminals rarely use this data for one dramatic theft. They use it quietly over years to open accounts in your name, file false tax returns, or add themselves as authorized users on credit products you will not discover until statements arrive at an old address.
The absence of any permanent identifiers such as Social Security numbers or driver’s license numbers is genuinely good news. Those pieces are the hardest to recover from. Their omission here limits how convincing a synthetic identity built from this breach can become. Still, the combination of name, address history, and date of birth remains valuable on the underground market precisely because it helps attackers pass the “knowledge-based authentication” questions many financial institutions still rely on.