MalwareRansomwareData EncryptedCustomer Data InvolvedPIIIDENTITY_BASICLowContained
OKLAHOMA CITY UNIVERSITY
bd_89dbdc38e2a2bb6c · schema v1 · pii pii-v1
Full breach record for OKLAHOMA CITY UNIVERSITY →Oklahoma City University reported a network security incident detected on July 23, 2022, where an unauthorized third party encrypted data. The incident affected current and prior students' PII. 14 New Hampshire residents were notified on March 20, 2023. OCU engaged forensic specialists, secured the network, reported to law enforcement, and offered credit monitoring.
Leak gap clock✗ Leak >180d35 weeks discovery → filing
This filing is one of 4 about the same incident.View merged incident
A leak claim by lockbit_3 about this victim predates this filing by 228 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_2e2e6a888a8d8276California State AGfiled 2023-03-27Candidate
- bd_6972e211d95a9a0bMaine State AGfiled 2023-03-27Verified by operator
- bd_d486b04db48f14eaMontana State AGfiled 2023-03-27Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/oklahoma-city-university-20230327.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 27, 2023
- Raw hash
- dea4f2191be56eca058681d99a43e807c3e51fe647e81ea47a786cf385ca401c
Reporting entity
- Name
- OKLAHOMA CITY UNIVERSITYnorm: oklahoma city university
- Domain
- okcu.edu
Victim entity
- Name
- OKLAHOMA CITY UNIVERSITYnorm: oklahoma city university
- Domain
- okcu.edu
Incident
- Discovered
- Jul 23, 2022
- Materiality determined
- —
- Notification sent
- Mar 20, 2023
- Affected individuals
- 14
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney General Consumer Protection Bureau
Compliance
- Time to disclose
- 35 weeks(247 days from discovery to filing)
- Compliance flags
- Leak >180d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.