The Washington Post
bd_0c9214c920bdd8f7 · schema v1 · pii pii-v1
Full breach record for The Washington Post →2 incidents on fileThreat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Cl0p on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
The WashingtonPost.com is the online edition of The Washington Post, a leading US daily newspaper. This platform provides news, analysis, commentary, and videos on politics, business, world, national and local news, sports, arts, lifestyle, and more. It offers both free and premium (subscription-based) content, and showcases investigative journalism, podcasts, and blogs.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Nov 7, 2025
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- Indiana State AGbd_209d44025d2c2a3d2025-11-12 · +4dVerified
- Montana State AGbd_2d05f81698405b0c2025-11-12 · +4dCandidate
- Nebraska State AGbd_6e10abe650a92d392025-11-12 · +4dVerified by operator
- Massachusetts State AGbd_ae6db829f44ccef92025-11-12 · +4dVerified by operator
Show 6 more filings ↓Show fewer ↑up to 248d gap
- Washington State AGbd_63991b5360c381222026-07-13 · +247dVerified by operator
- New Hampshire State AGbd_7696587630ae34ed2026-07-13 · +247dVerified
- California State AGbd_78926bf02d97b8f82026-07-13 · +247dVerified by operator
- Vermont State AGbd_c1d11a5eb36e7ede2026-07-13 · +247dVerified by operator
- Oregon State AGbd_0d97643c7c02e0a62026-07-14 · +248dVerified by operator
- Texas State AGbd_8e858a0885ff65162026-07-14 · +248dVerified by operator
Showing first 10 of 14 linked disclosures.
Filing propagation · 11 filings · 10 states
View merged incident ↗Pattern: first filing Nov 7, last Jul 14 (TX) — a 248-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Cascade drawn from the first 10 linked disclosures of 14 — the full spread may be wider.
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.