MalwareRansomwareData ExfiltratedRansom DemandedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Knox College
bd_422734f3a7f00c32 · schema v1 · pii pii-v1
Full breach record for Knox College →Knox College experienced a ransomware attack on November 24, 2022, resulting in unauthorized access and exfiltration of personal information including names, addresses, dates of birth, Social Security numbers, driver's license numbers, and passport numbers. The college engaged cybersecurity experts, notified the FBI, and is offering credit monitoring services to affected individuals.
California clockDiscovered Nov 24, 2022 → Notified Jan 3, 202340d ✓ CA 60-day OK6 weeks discovery → filing
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Ransomware claims (1)
- bd_03e98ba642099610Leak Sitehivefiled 2022-12-10(26d gap)Verified by operator
Regulatory filings (5) · sorted by filing gap
- bd_20c0e7297b3145b7Maine State AGfiled 2023-01-05Verified by operator
- bd_acd0f3afbf6abce1Oregon State AGfiled 2023-01-05Verified by operator
- bd_d926153edc6e25f5Maine State AGfiled 2023-01-05Verified by operator
- bd_0d522761fa2b843bWashington State AGfiled 2023-01-04(1d gap)Candidate
Show 1 more filing ↓Show fewer ↑up to 1d gap
- bd_7dae4dc8f93f3732Montana State AGfiled 2023-01-04(1d gap)Verified by operator
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-561334
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 5, 2023
- Raw hash
- a854152ebacfa4b52f10f63a4cf544113a7ecf20e05e9eefce7a6a3355e92251
Reporting entity
- Name
- Knox Collegenorm: knox college
Victim entity
- Name
- Knox Collegenorm: knox college
Incident
- Discovered
- Nov 24, 2022
- Materiality determined
- —
- Notification sent
- Jan 3, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Reported the incident to the Federal Bureau of Investigation
Compliance
- Time to disclose
- 6 weeks(42 days from discovery to filing)
- Compliance flags
- CA 60-day OK · 40d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Nov 24, 2022→ Notified: Jan 3, 202340d 60 days (analyst band, pre-2026 discoveries) CA 60-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.