The Republican Governors Association
bd_d1b4faf7253b34b8 · schema v1 · pii pii-v1
Full breach record for The Republican Governors Association →The Republican Governors Association (RGA) notified individuals of a data breach involving its Microsoft Exchange email environment. Threat actors exploited a widespread vulnerability in Microsoft Exchange Service between February and March 2021. RGA determined on June 24, 2021, that affected individuals' names were in the impacted portion of the email environment. RGA engaged forensic experts, patched systems, and offered two years of credit monitoring. The FBI and state regulators were notified.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 1, 2021
Begins
Mar 10, 2021
Discovered
Sep 15, 2021
Filed
vs. sector median
+9 wks slower
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Indiana State AGbd_19b6e52c5984a7112021-09-15Verified
- Massachusetts State AGbd_dd42f77634ba54a52021-09-15Verified
- New Hampshire State AGbd_e40fa04553cd585a2021-09-15Verified
- Maine State AGbd_fa1f241ce4f249052021-09-15Verified
Filing propagation · 5 filings · 5 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.