Valley Regional Transit
bd_1d005beea990e207 · schema v1 · pii pii-v1
Full breach record for Valley Regional Transit →Valley Regional Transit suffered a ransomware attack on October 14, 2021. Attackers exfiltrated data including names, DOBs, addresses, and SSNs/driver's license numbers before encrypting systems. VRT engaged legal counsel and forensic experts, notified the FBI and TSA, and offered one year of Experian credit monitoring. Remediation included enhanced network security, IDS installation, and patch management improvements.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 14, 2021
Begins
Oct 14, 2021
Discovered
Jan 21, 2022
Filed
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Massachusetts State AGbd_4f4d74fbdd5c0fb72022-01-25 · +4dVerified
- Idaho State AGbd_5bbda4e6f2ce65d82022-01-14 · +7dVerified
- Idaho State AGLockBit 2.0bd_76e9b90595f5b3242021-10-19 · +94dCandidate
Filing propagation · 4 filings · 3 states
View merged incident ↗Pattern: first filing Oct 19 (ID), last Jan 25 (MA) — a 98-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.