Traverse City Area Public Schools
bd_ccf4838e1d945d0a · schema v1 · pii pii-v1
Full breach record for Traverse City Area Public Schools →Press / market disclosure — not a breach-notification filing
A media or market posting that confirms an incident but carries no breach-notification fields, so compliance clocks aren't assessable. The summary below is extracted from the coverage — verify against the source.
Traverse City Area Public Schools close for cyber breach investigation. Traverse City Area Public Schools: The public schools in the Traverse City area closed on Monday to investigate a cyberattack that disrupted their network and access to certain systems. The administration responded by immediately disconnecting the network and engaging a specialized cybersecurity firm to secure the environment and conduct a thorough investigation. Classes were canceled for Monday, April 1, 2024, with the possibility that the closure could extend until Tuesday. Linked ransomware group: medusa.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Mar 31, 2024
Press report
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Attack → press
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Ransomware claims (2)
- Leak Sitemedusabd_f799947037f25d6a2024-04-13 · +14dVerified
- Leak Sitemedusabd_3327a5e2353e941b2024-03-31Verified
Regulatory filings (6) · sorted by filing gap
- Pressmedusabd_5b3f571bc7fb04c62024-03-28 · +3dCandidate
- Massachusetts State AGbd_352c7e60867f59552025-07-24 · +480dCandidate
- Vermont State AGbd_39dec15e884b64ac2025-07-24 · +480dVerified
- Maine State AGbd_650cc53ee19c6ca02025-07-24 · +480dVerified
Show 2 more filings ↓Show fewer ↑up to 484d gap
- Indiana State AGbd_a47a7d5ca4d3e6d72025-07-24 · +480dVerified
- New Hampshire State AGbd_403a303cc8ab92bc2025-07-28 · +484dVerified
Filing propagation · 7 filings · 5 states
View merged incident ↗Pattern: first filing Mar 28, last Jul 28 (NH) — a 487-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- incident type + narrative only (may be machine-translated)
- discovery date
- materiality
- affected count
- data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
medusa
According to ransomware.live, Medusa is a ransomware-as-a-service operation active since June 2021 that has targeted over 300 victims across critical infrastructure sectors including healthcare, education, legal, and manufacturing using double-extortion, with attacks surging 42% between 2023 and 2024 and a formal CISA advisory issued in early 2025.