Denver Area Council, Boy Scouts of America
ent_019dea5db5523f12157cd5d761b652f0
Disclosures
6
State AG · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
981,068
as filed · State AG WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Denver Area Council, Boy Scouts of America
- Normalized
- denver area council boy scouts of america— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300PQKXJ5GNSS3620
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (6)newest first
- Maine State AGas victim2024-07-11
Boy Scouts of America (non-profit, Maine chapter) reported an inadvertent disclosure affecting 12 Maine residents. The breach occurred on May 1, 2023 but was not discovered until April 29, 2024 — nearly one year later. Written notification was sent to affected individuals on April 29, 2024. No identity theft protection services were offered.
- Maine State AGas victim2020-11-25
The Boy Scouts of America reported an external system breach (hacking) occurring between February 7, 2020, and May 20, 2020, discovered on October 13, 2020. The incident affected 4,630 individuals, including 1 Maine resident. Acquired data included names and financial account or credit/debit card numbers (with security codes/PINs). The organization provided written notification to affected individuals on November 25, 2020.
- Indiana State AGas victim2020-11-25
Boy Scouts of America reported a data breach to the Indiana Attorney General. The breach occurred on 2020-02-07 and was reported on 2020-11-25. 14 Indiana residents were affected. 4,630 individuals affected in total.
- Massachusetts State AGas victim2020-11-25
Boy Scouts of America reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-11-25. 27 Massachusetts residents were affected. The report records the breach type as electronic.
- Washington State AGas victim2020-08-21
The Boy Scouts of America (BSA) notified the Washington AG of a ransomware attack on third-party provider Blackbaud, Inc. The attack occurred between Feb 7 and May 20, 2020. Blackbaud notified BSA on July 16, 2020. Unauthorized access resulted in the exfiltration of a backup file containing names, DOBs, and contact info of approx. 981,068 Washington residents. BSA began notifications on Aug 21, 2020.
- Montana State AGas victim2017-07-31
The Boy Scouts of America notified Montana residents that information from the 2013 National Scout Jamboree registration was accessible via the Internet on May 4, 2017. Affected data included names, addresses, dates of birth, and health conditions. No financial or government ID data was involved. The organization engaged forensic investigators and removed the data.