Gaston College
bd_398ba9c747a25eb2 · schema v1 · pii pii-v1
Full breach record for Gaston College →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Nokoyawa on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Gaston College is a public community college in Dallas, North Carolina. Serving Gaston County and Lincoln County, Gaston College enrolls over 5,000 students each term in curriculum programs and about 16,000 students in continuing education programs. It is part of the North Carolina...
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Mar 9, 2023
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Sitesnatchbd_9f324ce3f5933d572023-04-02 · +24dVerified by operator
Regulatory filings (7) · sorted by filing gap
- Indiana State AGbd_53511d0b016ed9812023-08-25 · +169dCandidate
- Vermont State AGbd_8dd8588b89e6f20b2023-08-25 · +169dVerified
- Montana State AGbd_115feb0035c68f6a2023-08-28 · +172dVerified
- South Carolina State AGbd_1b93a11525bbc5db2023-08-29 · +173dVerified
Show 3 more filings ↓Show fewer ↑up to 173d gap
- Massachusetts State AGbd_31263361e9a984602023-08-29 · +173dVerified
- New Hampshire State AGbd_930490fe30ca1f2d2023-08-29 · +173dVerified
- Maine State AGbd_f4c0d005bff0a19a2023-08-29 · +173dVerified
Filing propagation · 8 filings · 7 states
View merged incident ↗Pattern: first filing Mar 9, last Aug 29 (ME) — a 173-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
nokoyawa
According to ransomware.live, Nokoyawa is a double-extortion ransomware group that launched a RaaS program in 2022 (operated by threat actor "farnetwork"), primarily targeting businesses in South America across healthcare, financial services, government, and manufacturing, gaining significant attention in 2023 for exploiting a Windows CLFS zero-day (CVE-2023-28252).