DisclosureLens
MalwareGovernmentGovernmentRansomwareData ExfiltratedData EncryptedCustomer Data InvolvedPIIPHIIdentity (basic)Health (basic)LowContained

Mitchell County, North Carolina

bd_ba53828946d9fde6 · schema v1 · pii pii-v1

Severity

Low

Discovered

Oct 20, 2025

Filed

May 1, 2026

To disclose

Affected

Not disclosed

Linked

2 filings

Confidence

64%
Full breach record for Mitchell County, North Carolina

Mitchell County, North Carolina, notified individuals of a ransomware attack detected on October 20, 2025. Unauthorized access occurred between October 16 and October 20, 2025. The incident involved the exfiltration of personal information and protected health information (PHI). The County engaged federal law enforcement, third-party forensic consultants, and the NC Joint Cybersecurity Task Force. Notices were sent starting April 1, 2026, offering complimentary identity monitoring services.

Incident timeline

undetected · 4 days

Oct 16, 2025

Begins

Oct 20, 2025

Discovered

May 1, 2026

Filed

This filing is one of 2 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings · 2 states

View merged incident ↗
Nebraska State AGMay 1 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.