MalwareRansomwareData ExfiltratedData EncryptedCustomer Data InvolvedPIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
North Los Angeles County Regional Center
bd_8c36eabdbb03e778 · schema v1 · pii pii-v1
Full breach record for North Los Angeles County Regional Center →North Los Angeles County Regional Center disclosed a ransomware incident in November 2024. An unauthorized actor accessed systems between Nov 20 and Dec 1, 2024, exfiltrated personal information (names, government IDs), and encrypted systems. The entity engaged law enforcement and forensic professionals, reset passwords, and enhanced monitoring. No identity theft was confirmed.
Massachusetts clock✗ MA AG >90d18 months discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
A leak claim by medusa about this victim predates this filing by 535 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_46c8a44e39875c25Leak Sitemedusafiled 2024-12-12(535d gap)Candidate
Regulatory filings (2) · sorted by filing gap
- bd_021a4cab1cfa4d5fCalifornia State AGfiled 2026-06-30(29d gap)Candidate
- bd_ac2666b7c9330dcaIndiana State AGfiled 2026-06-30(29d gap)Verified
Source provenance
- Source URL
- https://www.mass.gov/doc/2026-1066-north-los-angeles-county-regional-center/download
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 1, 2026
- Raw hash
- 1c88362ac737e15fc167757b58590d888f713941d54f1f817c6df39913dffdc5
Reporting entity
- Name
- North Los Angeles County Regional Centernorm: north los angeles county regional center
- Domain
- nlacrc.org
Victim entity
- Name
- North Los Angeles County Regional Centernorm: north los angeles county regional center
- Domain
- nlacrc.org
Incident
- Discovered
- Nov 28, 2024
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- notifying federal law enforcement
Compliance
- Time to disclose
- 18 months(550 days from discovery to filing)
- Compliance flags
- MA AG >90dLeak >180d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.