
Accela Inc., a government technology company founded in 1999 and headquartered in San Ramon, California, disclosed a data breach that occurred in December 2025.
Accela provides cloud-based software solutions that help state and local government agencies manage permitting, licensing, code enforcement and other civic processes.
The incident involved only Accela's computer systems, and its government agency clients' own systems were not affected.
The breach was reported to the California Attorney General on Sept. 14, 2026.
An unauthorized actor accessed one of Accela's secure file transfer portals and acquired copies of certain files between Dec. 11 and Dec. 12, 2025.
The ransomware group known as Everest claimed responsibility for the attack. On Dec. 23, 2025, approximately 11 days after the breach occurred, the group posted a message on the dark web, stating it had obtained 1 terabyte of Accela's internal data and intended to publish the stolen information within seven to eight days.
The specific types of personal information exposed in the breach varied by individual, but remains undisclosed to the public at this time.
Accela is providing complimentary identity monitoring for one year through Kroll.
Affected individuals can activate their complimentary identity monitoring membership by visiting Kroll's enrollment website and entering the unique membership number included in their personal notification letter.
For questions about the incident, Accela has set up a dedicated response line through Kroll at 844-301-0074. The line is available Monday through Friday from 9:00 a.m. to 6:30 p.m. Eastern time, excluding some major U.S. holidays.








.webp)
.webp)
.webp)

.webp)
.webp)
.webp)
.webp)