MalwareRansomwareRansom DemandedRansom PaidData ExfiltratedSupply Chain (3P Vendor)IDENTITY_GOVERNMENTFINANCIAL_ACCOUNTIDENTITY_BASICMediumContained
Thrive Market
bd_d93a7c4a7b8e4125 · schema v1 · pii pii-v1
Full breach record for Thrive Market →Thrive Upstate notified South Carolina residents of a ransomware attack on third-party provider BlackBaud, Inc. in 2020. The attacker exfiltrated a backup file containing names, SSNs, addresses, and bank account information before being expelled. Thrive Upstate paid the ransom and provided 24 months of credit monitoring and fraud resolution services to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://consumer.sc.gov/sites/consumer/files/Documents/Business%20Resources%20Laws/Related%20Laws/Breaches/2020/ThriveUpstate.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 28, 2020
- Raw hash
- 64595c8b56184cba74e32718135984ebbd2462aac1276013b2390951c4154d7a
Reporting entity
- Name
- Thrive Marketnorm: thrive market
- Domain
- thrivemarket.com
Victim entity
- Name
- Thrive Marketnorm: thrive market
- Domain
- thrivemarket.com
Incident
- Discovered
- Oct 30, 2020
- Materiality determined
- —
- Notification sent
- Oct 30, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTFINANCIAL_ACCOUNTIDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Third party
- via BlackBaud, Inc.
Compliance
- Time to disclose
- 8 weeks(59 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.