HackingData ExfiltratedCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICLowContained
City of Hayward, Minnesota
bd_07b9796ec86c247f · schema v1 · pii pii-v1
Full breach record for City of Hayward, Minnesota →City of Hayward experienced a data security incident on July 9, 2023, involving data theft from its network. The City discovered on December 30, 2024, that the unauthorized actor had downloaded files containing personal information, including names. The City engaged external cybersecurity professionals, notified the FBI, and is enhancing security measures. Complimentary identity monitoring services are being provided to affected individuals.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_23584d2513e0424fIndiana State AGfiled 2025-01-29Verified
- bd_31b23c8ba48b2281Maryland State AGfiled 2025-01-29Verified
- bd_c85af40eea4341b4New Hampshire State AGfiled 2025-01-29Verified
- bd_e6c7af17315c5953Vermont State AGfiled 2025-01-29Verified
Show 2 more filings ↓Show fewer ↑up to 2d gap
- bd_ebf17f268801e42bMontana State AGfiled 2025-01-29Verified
- bd_999d64041fc82d93Maine State AGfiled 2025-01-31(2d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-598004
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 29, 2025
- Raw hash
- 4538dcd02087d622830f14f2974aeb49e2e09378e2a7562e85e42e5e50126ea3
Reporting entity
- Name
- City of Hayward, Minnesotanorm: city of hayward minnesota
Victim entity
- Name
- City of Hayward, Minnesotanorm: city of hayward minnesota
Incident
- Discovered
- Dec 30, 2024
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Notified the FBI of the incident
Compliance
- Time to disclose
- 4 weeks(30 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.