MalwareRansomwareSupply Chain (3P Vendor)Data ExfiltratedCustomer Data InvolvedIDENTITY_BASICLowContained
The Jane Goodall Institute
bd_babaeffc6503c796 · schema v1 · pii pii-v1
Full breach record for The Jane Goodall Institute →The Jane Goodall Institute notified donors of a data security incident at its vendor, Blackbaud, which was the target of a ransomware attack. Hackers obtained personally identifying information about donors and prospective donors. No credit card, bank account, or social security numbers were compromised. Blackbaud believes it retrieved the stolen data. JGI is conducting an independent inquiry and exploring alternative providers.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_7667b6e5d046ac58Oregon State AGfiled 2020-08-28Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-193569
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 28, 2020
- Raw hash
- 67f3ee7e7a2eb5f75a23e8651485aae82e8535390cd4bded5eb127a763983eb2
Reporting entity
- Name
- The Jane Goodall Institutenorm: the jane goodall institute
- Domain
- janegoodall.org
Victim entity
- Name
- The Jane Goodall Institutenorm: the jane goodall institute
- Domain
- janegoodall.org
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jul 31, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 ChannelT1195 Supply Chain Compromise
- Threat actor
- ExternalFinancial
- Third party
- via Blackbaud
- Initial access
- supply_chain
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.