HackingVulnerability ExploitCl0pData ExfiltratedData EncryptedRansom DemandedTargetedSupply Chain (3P Vendor)IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICMediumContained
Allegheny County, PA
bd_bcef71c9f4aa95e4 · schema v1 · pii pii-v1
Full breach record for Allegheny County, PA →Allegheny County, PA, notified the Idaho Attorney General on July 28, 2023, of a MOVEit vulnerability exploit by the Cl0p ransomware group. The incident occurred May 28-29, 2023, affecting 12 Idaho residents. Data exposed included names, SSNs, DOBs, driver's licenses, and some medical/financial info. The County patched the vulnerability, engaged forensic experts, notified law enforcement, and offered 24 months of credit monitoring.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_e092d8b603123ec8Maine State AGfiled 2023-07-28Verified
Source provenance
- Source URL
- https://www.ag.idaho.gov/content/uploads/2023/08/7-28-2023-Allegheny-County-PA.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 28, 2023
- Raw hash
- 7cb11f3458e4cc93a469990bc4f18eec3906d8a3bad38bf1a9bc58ec65408412
Reporting entity
- Name
- Troutman Pepper Hamilton Sanders LLPnorm: troutman pepper hamilton sanders
- Domain
- troutman.com
- Industry
- professional_services
Victim entity
- Name
- Allegheny County, PAnorm: allegheny county
- Domain
- alleghenycounty.us
- Industry
- government_public
Incident
- Discovered
- Jun 1, 2023
- Materiality determined
- —
- Notification sent
- Jul 28, 2023
- Affected individuals
- 12
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Unauthorized Access· Cl0p
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- Cl0pExternalFinancial
- Regulator citations
- Notified Idaho Attorney General's Office
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 8 weeks(57 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.