National Board for Certified Counselors, Inc.
ent_3f35c3dc0c5ca9169db6a6a3
Disclosures
10
State AG · 10 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
379,398
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- National Board for Certified Counselors, Inc.
- Normalized
- national board for certified counselors— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (10)newest first
- New Hampshire State AGas victim2021-01-21
National Board for Certified Counselors, Inc. (NBCC) notified the New Hampshire Attorney General of a ransomware incident affecting 2,063 NH residents. Unauthorized access occurred Aug 31–Sep 7, 2020. Malware encrypted files and an actor exfiltrated names, SSNs, DOBs, and credentials. NBCC engaged forensic investigators, notified the FBI, and provided 12 months of credit monitoring via TransUnion.
- South Carolina State AGas victim2021-01-13
National Board for Certified Counselors, Inc. (NBCC) disclosed a cybersecurity incident occurring between August 31 and September 7, 2020. An unauthorized actor introduced malware that encrypted files and exfiltrated personal data, including names, addresses, Social Security numbers, dates of birth, and credential information. NBCC engaged third-party forensic investigators, notified the FBI, and offered 12 months of credit monitoring via TransUnion. The incident was discovered on September 7, 2020, and notification letters were issued in 2021.
- Indiana State AGas victim2021-01-12
National Board for Certified Counselors, Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2020-08-31 and was reported on 2021-01-12. 7,650 Indiana residents were affected. 379,398 individuals affected in total.
- Montana State AGas victim2021-01-12
National Board for Certified Counselors, Inc. (NBCC) disclosed a ransomware incident where unauthorized access occurred Aug 31–Sep 7, 2020. Malware encrypted files and an actor exfiltrated PII including SSNs, DOBs, and credentials. NBCC engaged forensic investigators, notified the FBI, and offered 12 months of credit monitoring. The investigation concluded Dec 28, 2020.
- Maine State AGas victim2021-01-12
National Board for Certified Counselors, Inc. reported a data breach affecting 2,410 Maine residents. The breach, which occurred between August 31, 2020, and September 7, 2020, was an external system breach (hacking). The compromised information included names in combination with Social Security numbers. The breach was discovered between September 7, 2020, and December 28, 2020. Affected individuals were notified on January 12, 2021, and offered 12 months of credit monitoring and identity restoration services through TransUnion.
- California State AGas victim2021-01-12
National Board for Certified Counselors, Inc. (NBCC) experienced a malware incident between August 31 and September 7, 2020. The malware prevented access to certain files, and an unauthorized actor accessed and acquired files containing names, addresses, Social Security numbers, dates of birth, and credential information. NBCC engaged forensic investigators and notified the FBI. Affected individuals are offered 12 months of credit monitoring.
- Washington State AGas victim2021-01-12
National Board for Certified Counselors, Inc. (NBCC) reported a cyberattack in Washington affecting 9,898 residents. Unauthorized access occurred Aug 31–Sep 7, 2020, involving malware that encrypted files and exfiltrated data including names, SSNs, DOBs, and credentials. NBCC engaged forensic investigators, notified the FBI, and began notifying individuals on Jan 12, 2021.
- Delaware State AGas victim2021-01-12
National Board for Certified Counselors, Inc. (NBCC) disclosed a ransomware incident affecting 880 Delaware residents. Unauthorized access occurred between August 31 and September 7, 2020. The malware encrypted files and exfiltrated personal data including names, SSNs, DOBs, and credentials. NBCC engaged forensic investigators, notified the FBI, and provided 12 months of credit monitoring via TransUnion. Notification to residents began January 12, 2021.
- Massachusetts State AGas victim2021-01-12
National Board for Certified Counselors, Inc reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-01-12. 11,973 Massachusetts residents were affected. The report records the breach type as electronic.
- Illinois State AGas victim2021-01-01
NATIONAL BOARD FOR CERTIFIED COUNSELORS, INC filed a data-breach notice with the Illinois Attorney General during 2021 (case 21-015). The register records the breach as discovered on September 7, 2020. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.