A ransomware attack on one of Ohio's oldest historical societies resulted in the disclosure of 1000 people's private information.
During the attacks, the hackers were able to obtain W-9 reports and other documents, resulting in the release of names, residences, and Social Security numbers of everyone employed by the organisation between 2009 and 2023. The unnamed ransomware gang also gained access to information pertaining to OHC vendors, checks given to OHC by contributors since 2020, and more.
In order to prevent the data from being made public, the gang also asked that OHC pay a ransom in the millions of dollars.
TPRM report: https://scoringcyber.rankiteo.com/company/ohiohistory
"id": "ohi3514923",
"linkid": "ohiohistory",
"type": "Ransomware",
"date": "08/2023",
"severity": "100",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Historical preservation',
'location': 'Ohio, USA',
'name': "Ohio's Historical Society",
'type': 'Non-profit organization'}],
'data_breach': {'data_exfiltration': True,
'file_types_exposed': ['W-9 reports',
'Names',
'Residences',
'Social Security numbers',
'Vendor information',
'Checks from contributors'],
'number_of_records_exposed': 1000,
'personally_identifiable_information': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Personal information',
'Financial information']},
'description': "A ransomware attack on one of Ohio's oldest historical "
"societies resulted in the disclosure of 1000 people's private "
'information. The attack exposed W-9 reports, names, '
'residences, and Social Security numbers of employees from '
'2009 to 2023, along with vendor information and checks from '
'contributors since 2020.',
'impact': {'data_compromised': ['W-9 reports',
'names',
'residences',
'Social Security numbers',
'vendor information',
'checks from contributors'],
'identity_theft_risk': True,
'payment_information_risk': True},
'motivation': 'Financial gain',
'ransomware': {'data_exfiltration': True,
'ransom_demanded': 'Millions of dollars'},
'threat_actor': 'Unnamed ransomware gang',
'title': "Ransomware Attack on Ohio's Historical Society",
'type': 'Ransomware'}