Our Sunday Visitor
bd_40ad612b49bf4f37 · schema v1 · pii pii-v1
Full breach record for Our Sunday Visitor →2 incidents on fileThreat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Karakurt on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Our Sunday Visitor is a Catholic publisher serving millions of Catholics globally through its publishing, offertory, and communication services. They've lost 130GB of their data that includes full accounting documentation, many HR docs with personal data of employees, financial contracts and invoices, their marketing information and many other document as well. Coming soon.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Apr 29, 2023
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Regulatory filings (9) · sorted by filing gap
- HHS OCRbd_f9a334fa7897f5972023-05-05 · +6dVerified by operator
- Massachusetts State AGbd_172d66dd61dabbc32023-05-16 · +17dVerified by operator
- Montana State AGbd_2be84b2311d162752023-05-16 · +17dVerified by operator
- Indiana State AGbd_6f04facbdd40fba62023-05-16 · +17dVerified
Show 5 more filings ↓Show fewer ↑up to 146d gap
- Maine State AGbd_e0b653117783ff592023-05-16 · +17dVerified
- Vermont State AGbd_f0e598c1cc02e1b22023-05-16 · +17dVerified by operator
- New Hampshire State AGbd_da570cb60341058a2023-05-23 · +24dVerified by operator
- New Hampshire State AGbd_41e155ef3f3c42222023-09-22 · +146dVerified by operator
- Vermont State AGbd_6756c2b7f28bf89d2023-09-22 · +146dVerified by operator
Filing propagation · 10 filings · 6 states
View merged incident ↗Pattern: first filing Apr 29, last Sep 22 (VT) — a 146-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
karakurt
According to ransomware.live, Karakurt is a pure data-extortion group (no encryption) assessed with high confidence to be the extortion arm of the Conti ransomware group, active from 2021, that steals data and threatens to auction or publish it unless ransoms ranging from $25,000 to $13 million are paid.