Conference USA
bd_c885d8a46fe8fe8b · schema v1 · pii pii-v1
Full breach record for Conference USA →3 incidents on fileConference USA, a collegiate athletic conference, notified the NH Attorney General of an incident where an unauthorized actor gained limited access to its network on June 22, 2024. The organization discovered the access on the same date but confirmed on August 20, 2025, that personal information (full name and Social Security number) of one New Hampshire resident was potentially accessed. Notifications were sent on September 9, 2025. The organization engaged external cybersecurity professionals, enhanced security measures, and offered 12 months of credit monitoring to the affected individual.
J jump to incidentP pin to compareR raw source
Incident timeline
Jun 22, 2024
Begins
Jun 22, 2024
Discovered
Sep 15, 2025
Filed
vs. sector median
+56 wks slower
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Siteabyssbd_5d860a6a22a2b32e2024-06-22 · +450dVerified
Regulatory filings (5) · sorted by filing gap
- Texas State AGbd_0be6094df440b9772025-09-10 · +5dVerified
- Massachusetts State AGbd_712c8098a8788fd32025-09-10 · +5dVerified
- Indiana State AGbd_17fb630c75d6e4412025-09-09 · +6dCandidate
- Maine State AGbd_2bb1ff09b30cacf22025-09-09 · +6dVerified
Show 1 more filing ↓Show fewer ↑up to 6d gap
- Nebraska State AGbd_a231683022a437db2025-09-09 · +6dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing Sep 9 (IN), last Sep 15 (NH) — a 6-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.