HackingCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Yazoo ValleyElectric Power Assosiation
bd_6d8035dffb434706 · schema v1 · pii pii-v1
Full breach record for Yazoo ValleyElectric Power Assosiation →Yazoo Valley Electric Power Association notified the Maryland AG of a data incident discovered August 26, 2024. An unauthorized actor accessed files containing names and Social Security numbers. Five Maryland residents were affected. YVEPA engaged third-party specialists, secured the network, and offered 12 months of credit monitoring.
Maryland clock✗ MD AG >90d22 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 5 about the same incident.View merged incident
A leak claim by akira about this victim predates this filing by 174 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (2)
- bd_d701b05ec023bd1cLeak Siteakirafiled 2024-08-26(157d gap)Verified by operator
- bd_6097bfa9443865beLeak Siteakirafiled 2024-08-09(174d gap)Verified by operator
Regulatory filings (2) · sorted by filing gap
- bd_41f6ce6cb56e8a7fMaine State AGfiled 2025-01-30Verified by operator
- bd_a9953714171d1c30Indiana State AGfiled 2025-01-30Verified
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376276.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 30, 2025
- Raw hash
- 89820ba2cb29f21bb057134e9984de993b8a163c5c8765d304fc6b148229de04
Reporting entity
- Name
- Yazoo ValleyElectric Power Assosiationnorm: yazoo valleyelectric power assosiation
- Domain
- yazoovalley.com
Victim entity
- Name
- Yazoo ValleyElectric Power Assosiationnorm: yazoo valleyelectric power assosiation
- Domain
- yazoovalley.com
Incident
- Discovered
- Aug 26, 2024
- Materiality determined
- —
- Notification sent
- Jan 30, 2025
- Affected individuals
- 5
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified Maryland Attorney General
Compliance
- Time to disclose
- 22 weeks(157 days from discovery to filing)
- Compliance flags
- MD AG >90dLeak >90d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.