Valley Regional Transit
bd_76e9b90595f5b324 · schema v1 · pii pii-v1
Full breach record for Valley Regional Transit →Valley Regional Transit (VRT) notified the Idaho AG of a ransomware incident involving LockBit 2.0 discovered on Oct 14, 2021. VRT engaged forensic investigators and law enforcement (FBI, DHS/TSA). Threat actors claimed to have exfiltrated personal information and demanded ransom. VRT is restoring from backups and deploying EDR tools. No payroll or service interruptions reported.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 14, 2021
Discovered
Oct 19, 2021
Filed
vs. sector median
10 wks faster
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Idaho State AGbd_5bbda4e6f2ce65d82022-01-14 · +87dVerified
- Montana State AGbd_1d005beea990e2072022-01-21 · +94dVerified
- Massachusetts State AGbd_4f4d74fbdd5c0fb72022-01-25 · +98dVerified
Filing propagation · 4 filings · 3 states
View merged incident ↗Pattern: first filing Oct 19 (ID), last Jan 25 (MA) — a 98-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.