Columbia College of Chicago
bd_1dda001098a673f8 · schema v1 · pii pii-v1
Full breach record for Columbia College of Chicago →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Netwalker on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Jun 3, 2020
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- Massachusetts State AGbd_3ef7d979c74a98922020-07-15 · +42dVerified
- Montana State AGbd_6c1e0586edfbf6072020-07-15 · +42dVerified
- Indiana State AGbd_82e118f1ea9b222b2020-07-15 · +42dVerified by operator
- New Hampshire State AGbd_b2f2e5126ba2b5e62020-07-15 · +42dCandidate
Show 3 more filings ↓Show fewer ↑up to 189d gap
- New Hampshire State AGbd_7f8012c92f50029b2020-07-29 · +56dCandidate
- Illinois State AGbd_a7c6c1477885762d2020-01-01 · +154dVerified by operator
- Massachusetts State AGbd_c6d1e8dc0429f8322019-11-27 · +189dVerified by operator
Filing propagation · 8 filings · 5 states
View merged incident ↗Pattern: first filing Nov 27 (MA), last Jul 29 (NH) — a 245-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
netwalker
According to ransomware.live, NetWalker ransomware group operates by the threat actor known as "CIRCUS SPIDER". The NetWalker ransomware was discovered in 2019. The group mainly targeting the Asia Pacific region but can attack globally. The group uses common attacking tools like Mimikatz and other legitimate tools (LOLBINS) like PSTools, AnyDesk, TeamViewer, NLBrute, and more. The group knowing by targeting the healthcare sector. Finally, in January 2021, Netwalker was takedown by the authorities, the police have confiscated hundreds of thousands of dollars in ransom payments collected by the Netwalker group, and they seized servers and disrupted the infrastructure and the darknet websites of the Netwalker ransomware group.