MalwareRansomwareData EncryptedData ExfiltratedRansom DemandedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
EB Archbald & Associates, Inc
bd_ddaad36df642bd8a · schema v1 · pii pii-v1
Full breach record for EB Archbald & Associates, Inc →EB Archbald & Associates, Inc., an energy production accounting services provider, suffered a ransomware attack on March 23, 2025. Attackers encrypted data on servers and a Microsoft cloud portal and demanded payment. The company refused to pay. Attackers subsequently claimed to have exfiltrated data, including names, addresses, SSNs/TINs, and bank account/routing information. The company engaged forensic experts and notified the FBI, offering identity theft protection to affected individuals.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_3958bbbaf620f66eMontana State AGfiled 2025-05-14(1d gap)Candidate
- bd_6521be5edc124667Maine State AGfiled 2025-05-14(1d gap)Verified
- bd_196a79446ee9a376Indiana State AGfiled 2025-05-20(7d gap)Verified
- bd_a9c188028cc5a820Delaware State AGfiled 2025-05-20(7d gap)Verified
Show 2 more filings ↓Show fewer ↑up to 24d gap
- bd_b0d385473547ec89Delaware State AGfiled 2025-05-20(7d gap)Verified
- bd_6ac3bf8d23273610Texas State AGfiled 2025-06-06(24d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-602641
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 13, 2025
- Raw hash
- 6e71597bf66bc7d445cc08f8a67beb9b1b4caae89e1bf6d897a126020e33ffdd
Reporting entity
- Name
- EB Archbald & Associates, Incnorm: eb archbald associates
Victim entity
- Name
- EB Archbald & Associates, Incnorm: eb archbald associates
Incident
- Discovered
- Mar 23, 2025
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified the Federal Bureau of Investigation
Compliance
- Time to disclose
- 7 weeks(51 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.