HackingStolen CredentialsTargetedIDENTITY_BASICLowContained
Jewish Federation of Greater Pittsburgh
bd_25667813202cd45b · schema v1 · pii pii-v1
Full breach record for Jewish Federation of Greater Pittsburgh →Jewish Federation of Greater Pittsburgh notified consumers of unauthorized network access between Nov 5-12, 2024. Impacted data included names. The organization reported the incident to law enforcement, engaged external cybersecurity professionals, and provided 12 months of complimentary credit monitoring. No evidence of financial fraud or identity theft was found at the time of notification.
Vermont clock✗ VT AG >45 bday44 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_0025993abb7d2d24Indiana State AGfiled 2025-09-19Verified
- bd_60f79ae6b7ea9550Maine State AGfiled 2025-09-19Candidate
- bd_e03f93e19c942ae9Montana State AGfiled 2025-09-19Candidate
- bd_21b11d7401ef479dNew Hampshire State AGfiled 2025-09-22(3d gap)Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2025-09-19-jewish-federation-greater-pittsburgh-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 19, 2025
- Raw hash
- 38d88243e6906e131ee88e69a2d14bb5bc65bc0af1d0e8912b07b6347591900a
Reporting entity
- Name
- Jewish Federation of Greater Pittsburghnorm: jewish federation of greater pittsburgh
Victim entity
- Name
- Jewish Federation of Greater Pittsburghnorm: jewish federation of greater pittsburgh
Incident
- Discovered
- Nov 12, 2024
- Materiality determined
- Aug 20, 2025
- Notification sent
- Sep 19, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- reported the incident to law enforcement
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 44 weeks(311 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.