Young Consulting
bd_7315ee3ac8363f75 · schema v1 · pii pii-v1
Full breach record for Young Consulting →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group BlackSuit (formerly Royal) on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Young Consulting is the market leader in providing software solutions to the employer stop loss marketplace.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Apr 10, 2024
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- Indiana State AGbd_4ded0f97196230202025-01-25 · +290dVerified by operator
- Maryland State AGbd_400059bc40f88d5e2025-01-29 · +294dVerified by operator
- California State AGbd_7b04f3239ae6547d2025-01-29 · +294dVerified by operator
- New Hampshire State AGbd_1f6566b2d540498f2025-04-11 · +366dVerified by operator
Show 6 more filings ↓Show fewer ↑up to 449d gap
- California State AGbd_74ee160876e9cb592025-04-11 · +366dVerified by operator
- Maine State AGbd_a6f94afdabec56732025-04-11 · +366dVerified
- Maine State AGbd_bedd380143f5919b2025-07-02 · +448dVerified by operator
- New Hampshire State AGbd_d8afddd50e05d3152025-07-02 · +448dVerified by operator
- California State AGbd_f7562288ebd80f402025-07-02 · +448dVerified by operator
- Texas State AGbd_25f6da738738d1e02025-07-03 · +449dVerified by operator
Showing first 10 of 23 linked disclosures.
Filing propagation · 11 filings · 6 states
View merged incident ↗Pattern: first filing Apr 10, last Jul 3 (TX) — a 449-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Cascade drawn from the first 10 linked disclosures of 23 — the full spread may be wider.
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
blacksuit
According to ransomware.live, According to Trend Micro, this ransomware has significant code overlap with Royal Ransomware.