Fairfax County Public Schools
bd_e693ce2405ac5416 · schema v1 · pii pii-v1
Full breach record for Fairfax County Public Schools →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Maze on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Sep 11, 2020
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- Montana State AGMaze groupbd_4be94d2b976bd78e2020-11-09 · +59dVerified
- Indiana State AGbd_6a73de764768cc672020-11-09 · +59dVerified by operator
- Massachusetts State AGbd_b2163e3e9e7ff0db2020-11-16 · +66dVerified
- Maine State AGbd_b9cdc86785fdedce2020-11-16 · +66dVerified by operator
Show 3 more filings ↓Show fewer ↑up to 170d gap
- New Hampshire State AGMaze groupbd_6ac696a4588c5bbe2020-11-19 · +69dVerified by operator
- Indiana State AGbd_9c838cbce0cb732a2021-01-21 · +132dVerified by operator
- Maine State AGbd_2f6404a7d799f9d32021-02-28 · +170dVerified
Filing propagation · 8 filings · 5 states
View merged incident ↗Pattern: first filing Sep 11, last Feb 28 (ME) — a 170-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
maze
According to ransomware.live, Maze ransomware group is one of the most known ransomware gangs, they targeted organizations worldwide across many industries. Security researchers believed that Maze operates as an affiliated network model. MAZE was one of the first groups that made a 'Double Extortion Attack' involved Allied Universal, in November 2019, the group leaks their victim's data in the darknet. On November 1, 2020, MAZE announced an official press release that they are closing their operation. is malware targeting organizations worldwide across many industries. Security researchers claim that the threat actor behind the MAZE group is 'TA2101'.