MalwareRansomwareRansom DemandedRansom PaidData ExfiltratedSupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMINORMediumResolved
Cathedral High School
bd_88ccf408a93fdd4c · schema v1 · pii pii-v1
Full breach record for Cathedral High School →St. Francis Catholic High School notified the California AG of a data breach involving a third-party vendor, Blackbaud. A ransomware attack on Blackbaud resulted in the exfiltration of a 2007 backup file containing students' names, dates of birth, and Social Security numbers. Blackbaud paid the ransom and confirmed the data was destroyed. The school is offering 24 months of credit monitoring to affected families.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_9fa799992494623bCalifornia State AGfiled 2020-12-06(47d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-537343
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 22, 2021
- Raw hash
- f922b25c196b618e8b799deb212256a773b3db874203d2abfaff93cd391db1b9
Reporting entity
- Name
- Cathedral High Schoolnorm: cathedral high school
- Domain
- cathedralhs.org
Victim entity
- Name
- Cathedral High Schoolnorm: cathedral high school
- Domain
- cathedralhs.org
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTMINOR
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Third party
- via Blackbaud
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.