Doyon, Limited
bd_58c2397f0f6e1a5a · schema v1 · pii pii-v1
Full breach record for Doyon, Limited →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Black Basta on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Doyon, Limited, the regional Alaska Native corporation for Interior Alaska, is a for-profit corporation with more than 20,500 shareholders. Headquartered in Fairbanks, Alaska, Doyon employs over 800 individuals in Alaska and across the nation. Doyon operates a diverse family of companies in the areas of oil field services, government contracting utilities, construction, information technology, natural resources development, tourism, and real estate.SITE: www.doyon.com Address : 1 Doyon Place, Suite 300 Fairbanks, Alaska 99701-2941Doyon Drilling Inc. (DDI) operates on the North Slope of Alaska with nine of the most unique oil and gas land drilling rigs specially designed to drill oil wells in extreme conditions. In 1982 as a joint venture between Doyon, Limited, an Alaska Native regional corporation, and Nugget Alaska, Inc.SITE: www.doyondrilling.com Address : Doyon Drilling, Inc. Address. 11500 Sukdu Way Ste 200. Anchorage, Alaska 99515ALL DATA SIZE: ~700gb+ 1. Corporate data(Accountings, HR and etc.) 2. Employees personal infos 3. Scans, Confidential, users & etc...
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Apr 1, 2024
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Siteblack_bastabd_809d4dffcaccd96e2024-04-02 · +1dCandidate
Regulatory filings (9) · sorted by filing gap
- Montana State AGbd_1d99d73a1c0748762025-06-12 · +437dVerified
- Nebraska State AGbd_611b8c6ac959d9752025-06-12 · +437dVerified
- Texas State AGbd_681cd3cf515d55552025-06-12 · +437dVerified
- Indiana State AGbd_8bc3101c371cfc202025-06-12 · +437dVerified
Show 5 more filings ↓Show fewer ↑up to 444d gap
- Maine State AGbd_a24319d0a1461cbe2025-06-12 · +437dVerified
- California State AGbd_a8719b206ae4468a2025-06-12 · +437dVerified
- Washington State AGbd_d478f740aa2a2bd52025-06-12 · +437dVerified
- New Hampshire State AGbd_fbdd4f9c42edebab2025-06-12 · +437dVerified
- Vermont State AGbd_e4537929d4e671812025-06-19 · +444dVerified
Filing propagation · 10 filings · 9 states
View merged incident ↗Pattern: first filing Apr 1, last Jun 19 (VT) — a 444-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.