MalwareRansomwareData ExfiltratedData EncryptedRansom DemandedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Valley Regional Transit
bd_5bbda4e6f2ce65d8 · schema v1 · pii pii-v1
Full breach record for Valley Regional Transit →Valley Regional Transit (VRT) experienced a ransomware attack in October 2021. Cybercriminals exfiltrated folders containing personal information of Idaho residents, including names, DOBs, SSNs, driver's license numbers, and one payment card number. VRT notified approximately 477 affected residents, offering one year of credit monitoring via Experian. Substitute notice was provided for 38 individuals whose addresses could not be located.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_1d005beea990e207Montana State AGfiled 2022-01-21(7d gap)Verified
Source provenance
- Source URL
- https://ag.idaho.gov/content/uploads/2022/03/01-14-22-Valley-Regional-Transit-VRT-Follow-up.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 14, 2022
- Raw hash
- 89ebad8df2b172aa860260b595b4c0b4d7db3ac25c69a8dadc1ca91a1e6f09f8
Reporting entity
- Name
- ECKERT SEAMANS CHERIN & MELLOTT, LLCnorm: eckert seamans cherin mellott
Victim entity
- Name
- Valley Regional Transitnorm: valley regional transit
Incident
- Discovered
- Oct 18, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 477
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Follow-up to Notice of Data Security Incident provided to the Office of the Attorney General, State of Idaho
Compliance
- Time to disclose
- 13 weeks(88 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.