Clustered 5 filings across 5 jurisdictions · filing window Apr 24, 2025 → Apr 29, 2025. View entity profile → Other incidents for this victim →
incident inc_f53e363386d74064 · merge_method llm · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
PII
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
ID IN ME NH VT
all State AG
per-filing reported counts
State AGs report only their own residents; bars show per-filing counts.
Earliest sighting first · deep chronology in Litigation Timeline
Feb 8, 2025
When the intrusion reportedly occurred, per the linked filings
Feb 13, 2025
Reported by IDAHO AG, VERMONT AG, MAINE AG, NEW HAMPSHIRE AG filings
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
Baltimore City Public Schools reported a data breach to the Indiana Attorney General. The breach occurred on 2025-02-08 and was reported on 2025-04-24. 9 Indiana residents were affected. 20,665 individuals affected in total.
Affected (this filing): 20,665
Baltimore City Public Schools notified the Idaho Attorney General of a cybersecurity incident discovered on February 13, 2025, affecting one Idaho resident. The breach exposed PII including SSNs, driver's licenses, and passports for staff, and student records. The school engaged forensic investigators, notified law enforcement, installed EDR software, reset passwords, and offered two years of credit monitoring.
Affected (this filing): 1
Baltimore City Public Schools notified consumers of a cybersecurity incident discovered on Feb 13, 2025. Files containing names and other data elements were taken from the network. The district engaged law enforcement and external experts, implemented EDR, and reset passwords. Affected individuals are offered two years of complimentary credit monitoring and identity theft restoration services.
On February 13, 2025, Baltimore City Public Schools (MD) detected a cybersecurity incident affecting certain IT systems. Investigation confirmed that files were taken from the network between approximately February 8–24, 2025. The review was completed April 15, 2025. A total of 20,665 individuals were affected nationwide, including 2 Maine residents. Remediation included EDR software installation and password resets. Equifax credit monitoring (24 months) was offered to affected individuals.
Affected (this filing): 2
Baltimore City Public Schools notified the NH AG of a cybersecurity incident discovered on Feb 13, 2025, affecting 4 NH residents (employees/contractors). Impacted data included SSNs, driver's licenses, and student records. The organization engaged forensic investigators, notified law enforcement, installed EDR software, and reset passwords. Notices were sent on April 24, 2025.
Affected (this filing): 4