DisclosureLens
MalwareRetail & ConsumerProfessional ServicesRetailRansomwareStolen CredentialsRansom DemandedData ExfiltratedIdentity (basic)Government IDFinancial accountHighContained

Goodwill of Central and Coastal Virginia, Inc.

bd_3f8d34be783d8bde · schema v1 · pii pii-v1

Severity

High

Discovered

Nov 20, 2021

Filed

Dec 16, 2021

To disclose

26 days

Affected · nationwide

17,8003 in this filing

Linked

4 filings

Confidence

65%
Full breach record for Goodwill of Central and Coastal Virginia, Inc.

Goodwill of Central and Coastal Virginia, Inc. disclosed a ransomware incident on November 20, 2021, impacting IT systems. Approximately 17,800 current and former employees were notified that their PII, including SSNs and financial data, may have been exposed. The company did not pay the ransom, engaged forensic investigators, and provided 24 months of identity monitoring via Kroll.

Incident timeline

discovery → filing · 26 days

Nov 20, 2021

Begins

Nov 20, 2021

Discovered

Dec 16, 2021

Filed

vs. sector median

4 wks faster

This filing is one of 4 about the same incident.View merged incident

Linked disclosures

Why this link?

Ransomware claims (1)

Regulatory filings (2) · sorted by filing gap

Filing propagation · 3 filings · 3 states

View merged incident ↗
Indiana State AGDec 16 · first
Montana State AGDec 16 · first · this page

Pattern: first filing Dec 16 (IN), last Dec 30 (MA) — a 14-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.