DisclosureLens
AccidentalGovernmentGovernmentMisconfigurationCustomer Data InvolvedIdentity (basic)Government IDMediumContained

City of Roanoke

bd_b1c0711858967d8c · schema v1 · pii pii-v1

Severity

Medium

Discovered

Jul 31, 2023

Filed

Jul 31, 2023

To disclose

≤1 day

Affected

Not disclosed

Linked

2 filings

Confidence

69%
Full breach record for City of Roanoke4 incidents on file

The City of Roanoke notified consumers of a data breach involving a server with a configuration issue that may have allowed unauthorized access to personal information, including names, Social Security numbers, and addresses. No evidence of data theft was found. The City engaged cybersecurity experts, remedied the issue, and offered 24 months of credit monitoring through Experian.

Vermont clock VT AG ≤14 bday≤1 day discovery → filing
notification dateThe stored discovery date equals the NOTIFICATION date, collapsing the clock to ~zero. This UNDERSTATES the delay and can mask a real violation.

Incident timeline

discovery → filing · ≤1 day / 0 days

Jul 31, 2023

Discovered

Jul 31, 2023

Filed

vs. sector median

11 wks faster

This filing is one of 2 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings · 2 states

View merged incident ↗
Indiana State AGJul 31 · first
Vermont State AGJul 31 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.