Crimson Wine Group, Ltd.
bd_5f666f0a00d5b193 · schema v1 · pii pii-v1
Full breach record for Crimson Wine Group, Ltd. →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Abyss on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
crimsonwinegroup.com.com 1.6Tb uncompressed data
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Jun 30, 2024
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Siteabyssbd_26abea618405c74c2024-07-25 · +25dVerified by operator
Regulatory filings (9) · sorted by filing gap
- SEC 8-Kbd_9737d8201342285b2024-07-25 · +25dVerified by operator
- Illinois State AGbd_e0ece01076c1b7162024-12-01 · +154dCandidate
- Washington State AGbd_356c71d91c3449252024-12-13 · +166dVerified
- New Hampshire State AGbd_4daf8961ad661eda2024-12-13 · +166dVerified
Show 5 more filings ↓Show fewer ↑up to 167d gap
- Montana State AGbd_97d469a8862c1d2e2024-12-13 · +166dVerified
- Maine State AGbd_d15098c1f023a7c92024-12-13 · +166dVerified
- Vermont State AGbd_d21fb3856264f6b72024-12-13 · +166dVerified
- Oregon State AGbd_df3b95abdfdf21722024-12-13 · +166dVerified
- Massachusetts State AGbd_e4d202cfe6a12d7a2024-12-14 · +167dVerified
Showing first 10 of 11 linked disclosures.
Filing propagation · 10 filings · 8 states
View merged incident ↗Pattern: first filing Jun 30, last Dec 14 (MA) — a 167-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Cascade drawn from the first 10 linked disclosures of 11 — the full spread may be wider.
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
abyss
According to ransomware.live, Abyss (also known as Abyss Locker) is a ransomware operation first identified in March 2023, derived from the Babuk source code, that targets Windows and Linux/VMware ESXi systems using double-extortion tactics across healthcare, manufacturing, finance, and technology sectors — predominantly in North America.