Ampex Data Systems
bd_68635f5ae613817a · schema v1 · pii pii-v1
Full breach record for Ampex Data Systems →Ampex Data Systems Corporation notified Massachusetts residents of a cybersecurity incident discovered on March 21, 2026, where a threat actor accessed and encrypted the network at one of its office locations. The incident involved the encryption of data (ransomware) and potential exfiltration of personal information, including names, addresses, SSNs, dates of birth, and in some cases, driver's license or banking information. Ampex engaged forensic investigators, notified the FBI and DC3, and is providing credit monitoring services to affected individuals. The incident status remains active as restoration is ongoing.
Linked disclosures
Why this link?Ransomware claims (2)
- bd_571e436d5a1335c1Leak Siteplayfiled 2026-03-30(31d gap)Verified
- bd_cde8e1e1cbada45fLeak Siteplayfiled 2026-01-12(109d gap)Verified by operator
Regulatory filings (2) · sorted by filing gap
- bd_6c8fa41d68c17607Maine State AGfiled 2026-05-18(17d gap)Verified by operator
- bd_5a80584f7d8fe5e9California State AGfiled 2026-05-27(26d gap)Verified
Source provenance
- Source URL
- https://www.mass.gov/doc/2026-809-ampex-data-systems-corp/download
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 1, 2026
- Raw hash
- 529f28a997fec202fbf3f2ce8369e6dd17fa0cec8117cde47cc6941bf870895d
Reporting entity
- Name
- Ampex Data Systemsnorm: ampex data
- Domain
- ampex.com
Victim entity
- Name
- Ampex Data Systemsnorm: ampex data
- Domain
- ampex.com
Incident
- Discovered
- Mar 21, 2026
- Materiality determined
- —
- Notification sent
- May 1, 2026
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- notified the FBI’s Internet Crime Complaint Center (IC3)notified the Department of Defense Cyber Crime Center (DC3)continuing to work with the FBI to assist in its investigation
Compliance
- Time to disclose
- 6 weeks(41 days from discovery to filing)
- Compliance flags
- MA AG >30dLeak >90d
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.