DisclosureLens
MalwareGovernmentGovernmentRansomwareRansom DemandedData ExfiltratedData PublishedTargetedPIIIdentity (basic)LowContained

Box Elder County

bd_a1e28b49e506ea41 · schema v1 · pii pii-v1

Severity

Low

Discovered

Aug 3, 2025

Filed

Dec 17, 2025

To disclose

19 weeks

Affected

77state residents only

Linked

7 filings

Confidence

65%
Full breach record for Box Elder County

Box Elder County, Utah, experienced a ransomware incident with unauthorized network access between May 6 and August 3, 2025. The County detected the ransomware on August 3, 2025, and engaged forensic consultants and law enforcement. The attackers exfiltrated public records and posted data online; the County refused to pay ransom. Notices were sent to affected individuals starting November 17, 2025.

Incident timeline

undetected · 89 days
discovery → filing · 19 weeks / 136 days

May 6, 2025

Begins

Aug 3, 2025

Discovered

Dec 17, 2025

Filed

vs. sector median

+9 wks slower

This filing is one of 7 about the same incident.View merged incident

Linked disclosures

Why this link?

Ransomware claims (1)

Regulatory filings (5) · sorted by filing gap

Show 1 more filingup to 9d gap

Filing propagation · 6 filings · 6 states

View merged incident ↗
Nebraska State AGDec 17 · first
Maine State AGDec 17 · first
Indiana State AGDec 17 · first
Montana State AGDec 17 · first · this page

Pattern: first filing Dec 17 (NE), last Dec 26 (MA) — a 9-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.