DisclosureLens
GLOBALUnknownRansomwareInterlockLow

Fargo Park District

bd_0c6fca6c05e1155b · schema v1 · pii pii-v1

Severity

Low

Discovered

Filed

Oct 27, 2025

To disclose

Affected

Not disclosed

Linked

5 filings

Confidence

60%
Full breach record for Fargo Park District

Press / market disclosure — not a breach-notification filing

A media or market posting that confirms an incident but carries no breach-notification fields, so compliance clocks aren't assessable. The summary below is extracted from the coverage — verify against the source.

Fargo Park District: The Fargo Park District suffered a security breach in October, which disrupted phones, emails, and internal systems, and an investigation is still underway to determine the extent of the incident. Residents were not notified until weeks later, and it remains unclear whether any data was exposed. The district is working with experts to understand the scope of the incident, and residents who interacted with the district in late October are advised to monitor their bank accounts and be cautious of unsolicited emails or calls. Linked ransomware group: interlock.

Incident timeline — mostly unverified

? — ?

Breach window unknown

Oct 27, 2025

Press report

Corroborated · see linked filings

Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.

Attack → press

Compliance clock

Not assessable

This filing is one of 5 about the same incident.View merged incident

Linked disclosures

Why this link?

Ransomware claims (1)

Regulatory filings (3) · sorted by filing gap

Filing propagation · 4 filings · 3 states

View merged incident ↗
PressOct 27 · first · this page

Pattern: first filing Oct 27, last Jul 13 (NE) — a 259-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market reportThis record

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filing

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.

Source ceiling

  • incident type + narrative only (may be machine-translated)
  • discovery date
  • materiality
  • affected count
  • data types
  • compliance clock

The ✕ fields stay blank until a regulatory filing or victim disclosure lands.

About this groupFirst seen 2023-12-01

interlock

According to ransomware.live, Interlock is a ransomware group first observed in September 2024 that targets critical infrastructure sectors including healthcare, government, education, and technology across North America and Europe using double-extortion, with 57+ claimed victims including a major US dialysis provider exposing over two million patient records.

127 tracked hereFull profile →