Botetourt County Public Schools
bd_05f99f93d444a7f8 · schema v1 · pii pii-v1
Full breach record for Botetourt County Public Schools →Press / market disclosure — not a breach-notification filing
A media or market posting that confirms an incident but carries no breach-notification fields, so compliance clocks aren't assessable. The summary below is extracted from the coverage — verify against the source.
Botetourt County Public Schools investigates cybersecurity incident. Botetourt County Public Schools: The Botetourt County Public Schools are investigating a cybersecurity vulnerability that affected their network. The incident temporarily impacted certain computer systems, and the school is working to restore full functionality. The investigation is ongoing with the assistance of cybersecurity experts and state and federal authorities. Linked ransomware group: qilin.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
May 13, 2025
Press report
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Attack → press
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Ransomware claims (2)
- Leak Siteqilinbd_8b60a146ca4f17482025-05-29 · +16dCandidate
- Leak Siteqilinbd_0753e73f7f6570782025-05-13Verified by operator
Regulatory filings (1) · sorted by filing gap
- Indiana State AGbd_755fff6bdfac1f3d2025-06-27 · +45dVerified by operator
Filing propagation · 2 filings
View merged incident ↗Pattern: first filing May 13, last Jun 27 (IN) — a 45-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- incident type + narrative only (may be machine-translated)
- discovery date
- materiality
- affected count
- data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
qilin
According to ransomware.live, Qilin ransomware was first observed in July of 2022. Qilin Ransomware is written in Golang and supports multiple encryption modes; all of which are controlled by the operator. Qilin actors practice double extortion – demanding payment for a decryptor, as well as for the non-release of stolen data.