BLACKBAUD, INC.
ent_019de1bb15fed726050a451764ea51ce
Disclosures
3
SEC 8-K · State AG · 2 jurisdictions
Incidents
—
no linked incident in sample
Max affected reported
2
as filed · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- BLACKBAUD, INC.
- Normalized
- blackbaud— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 54930056X3HKFMNG3754
- SEC EDGAR CIK
- 0001280058
- Domain
- blackbaud.com
Disclosure history (3)newest first
- FEDERALSEC 8-Kas victim2024-02-02
On February 1, 2024, the FTC announced approval of a settlement with Blackbaud, Inc. resolving its investigation into the previously announced 2020 Security Incident, in which a cybercriminal removed a copy of a subset of data from Blackbaud's self-housed environment. Under the FTC's proposed order, Blackbaud agreed to certain conditions but was not fined and is not required to make any payment. Blackbaud neither admitted nor denied the allegations.
- FEDERALSEC 8-Kas victim2023-10-05
Blackbaud, Inc. filed an 8-K on October 5, 2023, announcing the settlement of a multi-state investigation regarding a 2020 security incident. Blackbaud agreed to pay $49.5 million to 49 states and D.C. to resolve allegations related to a cyber criminal removing a subset of data from its environment. The settlement requires compliance with consumer protection laws, HIPAA, and improved cybersecurity programs. California's investigation remains unresolved.
- ⛰️New Hampshire State AGas victim2021-01-21
Wayne State Foundation notified New Hampshire AG of a ransomware attack on third-party provider Blackbaud. The attack occurred between Feb 7 and May 20, 2020. WSF discovered 2 NH residents potentially impacted via SSN/DOB in the database. Blackbaud paid ransom and confirmed data destruction. WSF offered 1 year of credit monitoring.