MalwareRansomwareData EncryptedData ExfiltratedEmployee Data InvolvedIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumActive
Blenders in the Grass
bd_eef008d0ef2896f3 · schema v1 · pii pii-v1
Full breach record for Blenders in the Grass →Blenders in the Grass reported a ransomware attack on August 27, 2025, initiated via a clicked link. Attackers encrypted and potentially exfiltrated employee personnel information, including social security numbers and bank account details. The company is actively monitoring the situation and offering identity protection services to affected employees.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-607872
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 28, 2025
- Raw hash
- efafe3e83e4df5b718909f74fdb9aa55b01d389c1b6af012c522efa83077820e
Reporting entity
- Name
- Blenders in the Grassnorm: blenders in the grass
Victim entity
- Name
- Blenders in the Grassnorm: blenders in the grass
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Aug 28, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Initial access
- phishing_link
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.