HackingVulnerability ExploitCL0PData ExfiltratedSupply Chain (3P Vendor)Customer Data InvolvedActor NamedIDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTFINANCIALMediumContained
University System of Georgia
bd_3c4f63a7a68d7602 · schema v1 · pii pii-v1
Full breach record for University System of Georgia →University System of Georgia (USG) experienced a data breach due to a vulnerability in Progress Software's MOVEit Secure File Transfer platform. The cybercriminal group CL0P exploited this vulnerability starting May 28, 2023, gaining unauthorized access to files. USG detected the breach on May 31, 2023, and immediately blocked the software. Affected data includes Social Security Numbers, dates of birth, bank account numbers, and tax documents. USG is offering complimentary Experian IdentityWorks and Identity Restoration services to affected individuals.
Leak gap clock✗ Leak >180d43 weeks discovery → filing
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Ransomware claims (1)
- bd_72e2f544722c205dLeak Sitecl0pfiled 2023-07-07(264d gap)Candidate
Regulatory filings (1) · sorted by filing gap
- bd_a72e0f79e01a5963Oregon State AGfiled 2024-03-28Verified by operator
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-583212
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 28, 2024
- Raw hash
- 4a211c65cf68bd7dace87e631ef8bb599a1722fd504379f637817952e35b6aa6
Reporting entity
- Name
- University System of Georgianorm: university system of georgia
- Domain
- regents.usg.edu
Victim entity
- Name
- University System of Georgianorm: university system of georgia
- Domain
- regents.usg.edu
Incident
- Discovered
- May 31, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTFINANCIAL
- Attack vector
- Unauthorized Access· CL0P
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1041 Exfiltration Over C2 Channel
- Threat actor
- CL0PExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 43 weeks(302 days from discovery to filing)
- Compliance flags
- Leak >180d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.