Shelley School District
ent_dda4f68be5ce4db98612e115
Disclosures
3
State AG · 2 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
171
as filed · State AG ID
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Shelley School District
- Normalized
- shelley school district— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- Montana State AGas victim2022-03-24
Shelley School District notified affected individuals of a ransomware attack on December 6, 2021, which resulted in data exfiltration before encryption. Personal information including names, DOBs, addresses, and SSNs/Driver's Licenses was compromised. The District engaged forensic investigators, notified the FBI, and offered one year of Experian credit monitoring.
- Idaho State AGas victim2022-03-23
Shelley School District in Idaho experienced a ransomware attack on December 6, 2021. Cybercriminals exfiltrated data before deploying ransomware. The breach affected approximately 171 Idaho residents, including students, employees, and families. Affected data included names, dates of birth, addresses, Social Security numbers, driver's license numbers, and for some, bank account and payment card details. The district contained the attack, restored operations, and notified the FBI and state regulators. Remediation steps include deploying EDR, adding MFA, and enhancing security training.
- Idaho State AGas victim2022-02-23
Shelley School District (Idaho) notified the Idaho Attorney General on Feb 23, 2022, of a ransomware attack impacting systems starting Dec 6, 2021. The investigation revealed potential unauthorized access to Idaho residents' Social Security numbers. The District engaged forensic investigators, deployed SentinelOne, and migrated authentication to the cloud. Data was exfiltrated; the scope of affected individuals is still being determined.