Teton County
bd_2a8942294ca6026f · schema v1 · pii pii-v1
Full breach record for Teton County →Teton County, Idaho, disclosed a data security incident involving its public records search portal (Laserfiche). The County discovered that sensitive personal information, including names, addresses, dates of birth, and Social Security numbers, was potentially accessible to the public via the portal from upload until December 22, 2021. The County engaged forensic investigators, secured the portal, and notified approximately 60 Idaho residents. Remediation includes scrubbing documents of sensitive data and implementing controls to prevent future inclusion of sensitive info in public records.
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_01d42fb64e32fdf0Montana State AGfiled 2022-03-24Verified by operator
- bd_e24a9cedf5ef8192Idaho State AGfiled 2022-03-03(21d gap)Candidate
Source provenance
- Source URL
- https://ag.idaho.gov/content/uploads/2022/03/03-24-2022-Teton-County.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 24, 2022
- Raw hash
- e1f503fe9314415afc5f70cc54bec38cc3d9b57a30d9c7e9496285e346298481
Reporting entity
- Name
- Teton Countynorm: teton county
- Domain
- co.teton.id.us
Victim entity
- Name
- Teton Countynorm: teton county
- Domain
- co.teton.id.us
Incident
- Discovered
- Dec 22, 2021
- Materiality determined
- —
- Notification sent
- Mar 24, 2022
- Affected individuals
- 60
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Regulator citations
- Provided notice of this incident to appropriate state regulators
Compliance
- Time to disclose
- 13 weeks(92 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.