MalwareRansomwareRansom DemandedRansom PaidData ExfiltratedSupply Chain (3P Vendor)IDENTITY_BASICLowContained
The University of South Carolina Upstate Foundations
bd_d9ceef35f250f49c · schema v1 · pii pii-v1
Full breach record for The University of South Carolina Upstate Foundations →University of South Carolina Upstate Foundations notified constituents of a ransomware incident involving third-party vendor Blackbaud, Inc. The attack occurred between Feb 7 and May 20, 2020. Blackbaud paid a ransom and confirmed data destruction. Affected data included names and addresses. One year of credit monitoring was offered.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_be237c0c42542cb7Montana State AGfiled 2020-09-14Verified
- bd_d601caf53bd57c12Maine State AGfiled 2020-09-14Candidate
Source provenance
- Source URL
- https://consumer.sc.gov/sites/consumer/files/Documents/Business%20Resources%20Laws/Related%20Laws/Breaches/2020/USCUpstateFoundations.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 14, 2020
- Raw hash
- 87e7537239fa3b5ded06d873c52bda6a4c6d89bff371149ca2e52a2eaf2f406f
Reporting entity
- Name
- The University of South Carolina Upstate Foundationsnorm: the university of south carolina upstate foundations
Victim entity
- Name
- The University of South Carolina Upstate Foundationsnorm: the university of south carolina upstate foundations
Incident
- Discovered
- May 1, 2020
- Materiality determined
- —
- Notification sent
- Sep 4, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Investigation by law enforcement
Compliance
- Time to disclose
- 19 weeks(136 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.