National Board for Certified Counselors, Inc.
ent_3f35c3dc0c5ca9169db6a6a3
Disclosures
6
State AG · 6 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
9,898
as filed · State AG WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- National Board for Certified Counselors, Inc.
- Normalized
- national board for certified counselors— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (6)newest first
- 🌴South Carolina State AGas victim2021-01-13
National Board for Certified Counselors, Inc. (NBCC) disclosed a cybersecurity incident occurring between August 31 and September 7, 2020. An unauthorized actor introduced malware that encrypted files and exfiltrated personal data, including names, addresses, Social Security numbers, dates of birth, and credential information. NBCC engaged third-party forensic investigators, notified the FBI, and offered 12 months of credit monitoring via TransUnion. The incident was discovered on September 7, 2020, and notification letters were issued in 2021.
- 🦬Montana State AGas victim2021-01-12
National Board for Certified Counselors, Inc. reported a data breach to the Montana Attorney General. The breach was reported on 2021-01-12. The breach occurred from 8/31/2020 to 9/7/2020. 1,743 Montana residents were affected.
- 🦞Maine State AGas victim2021-01-12
National Board for Certified Counselors, Inc. reported a data breach affecting 2,410 Maine residents. The breach, which occurred between August 31, 2020, and September 7, 2020, was an external system breach (hacking). The compromised information included names in combination with Social Security numbers. The breach was discovered between September 7, 2020, and December 28, 2020. Affected individuals were notified on January 12, 2021, and offered 12 months of credit monitoring and identity restoration services through TransUnion.
- 🐻California State AGas victim2021-01-12
National Board for Certified Counselors, Inc. (NBCC) disclosed a ransomware incident occurring between August 31 and September 7, 2020. Malware encrypted files and an unauthorized actor exfiltrated data including names, addresses, Social Security numbers, dates of birth, and credential information. NBCC engaged forensic investigators, notified the FBI, and offered 12 months of credit monitoring via TransUnion. The investigation concluded on December 28, 2020.
- 🌲Washington State AGas victim2021-01-12
National Board for Certified Counselors, Inc., a non-profit/charity sector entity reported a malware incident to the Washington Attorney General. The organization became aware of the incident on 2020-09-07 and filed notice on 2021-01-12. 9,898 Washington residents were affected. 127 days elapsed between awareness and notification. 7 days to identify the breach. 0 days to contain the breach.
- 💎Delaware State AGas victim2021-01-12
National Board for Certified Counselors, Inc. (NBCC) disclosed a ransomware incident affecting 880 Delaware residents. Unauthorized access occurred between August 31 and September 7, 2020. The malware encrypted files and exfiltrated personal data including names, SSNs, DOBs, and credentials. NBCC engaged forensic investigators, notified the FBI, and provided 12 months of credit monitoring via TransUnion. Notification to residents began January 12, 2021.