DisclosureLens
MalwareGovernmentGovernmentRansomwareData ExfiltratedData EncryptedCustomer Data InvolvedEmployee Data InvolvedIdentity (basic)Government IDFinancial accountHealth (basic)MediumContained

Iowa County Government

bd_570aa911ac6f9741 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Apr 28, 2025

Filed

Aug 12, 2025

To disclose

15 weeks

Affected

2state residents only

Confidence

67%

Iowa County, Wisconsin, notified the New Hampshire Attorney General on August 8, 2025, of a ransomware incident detected on April 28, 2025. The breach affected two New Hampshire residents, exposing names, government IDs (SSN, driver's license), financial account numbers, and limited health information. The county engaged forensic experts, restored systems from backups, and provided credit monitoring to affected individuals.

Incident timeline

discovery → filing · 15 weeks / 106 days

Apr 28, 2025

Discovered

Aug 12, 2025

Filed

vs. sector median

+4 wks slower

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed2 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.