MalwareRansomwareSupply Chain (3P Vendor)Data ExfiltratedData EncryptedRansom DemandedRansom PaidData PublishedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
Florida State College at Jacksonville Foundation
bd_6bc4a6bc0d951f00 · schema v1 · pii pii-v1
Full breach record for Florida State College at Jacksonville Foundation →Florida State College at Jacksonville Foundation reported a data breach involving its vendor, Blackbaud. A ransomware attack on Blackbaud's network between Feb 7 and May 20, 2020, resulted in the exfiltration of backup files containing names and Social Security numbers. Blackbaud paid a ransom and destroyed the files. The Foundation notified affected individuals in September 2020, offering one year of credit monitoring via Kroll.
California clockDiscovered Jul 16, 2020 → Notified Sep 15, 202061d ✗ CA 60-day late20 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_67c1711743513d8eMaine State AGfiled 2020-11-30Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-196618
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 30, 2020
- Raw hash
- a1bde7b78e8424a1f578722c3c76e222e742989e7e02f4705deac9a1ff5ebd00
Reporting entity
- Name
- Florida State College at Jacksonville Foundationnorm: florida state college at jacksonville
Victim entity
- Name
- Florida State College at Jacksonville Foundationnorm: florida state college at jacksonville
Incident
- Discovered
- Jul 16, 2020
- Materiality determined
- —
- Notification sent
- Sep 15, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1195 Supply Chain Compromise
- Threat actor
- ExternalFinancial
- Regulator citations
- Submitted breach notification to California Office of the Attorney General
- Initial access
- supply_chain
Compliance
- Time to disclose
- 20 weeks(137 days from discovery to filing)
- Compliance flags
- CA 60-day late · 61d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Jul 16, 2020→ Notified: Sep 15, 202061d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.