DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Attacked by Vice Society earlier this month, Lewis & Clark finds files with personal information have now been leaked

Posted on March 31, 2023 by Dissent

It appears that Lewis & Clark in Oregon has been the victim of a ransomware attack by Vice Society.

Notice on Lewis & Clark’s website, March 31. Image: DataBreaches.net

An urgent notice on the college’s website currently says:

Urgent LC Alert: Campus phone service and PioNet Guest Wifi are working. If you are unable to reach Campus Safety at 503-768-7777, call the backup number at 503-593-5457. In an emergency, call 9-1-1. See current list of available network services.
On March 23, the college issued a notice on its site, referring to a “security incident” but never mentioning the word “ransomware” or reporting the receipt of any ransom demand:

March 2023 System Outage

On March 3, 2023, Lewis & Clark experienced an IT security incident which negatively impacted systems and services across our campuses. Our IT team is working around the clock, alongside a team of external experts, to restore services and advise the college about next steps.

Classes and events on campus are continuing as scheduled.

Various IT systems have been fully or partially restored.  We will keep you informed of developments as progress is made, and will update this webpage as new information is available.

Their outage updates page, last updated on March 24, also includes an FAQ. One of the questions was:

We are working with external information technology experts to conduct a detailed technical investigation into the outage. Please keep in mind that our investigation is in the earliest stages and is still ongoing. Restoring normal operations and protecting data integrity are our top priority. We will provide further updates and information as appropriate.

Today, but perhaps as yet unknown to students and employees, Vice Society answered that question by dumping a lot of files on their dark web leak site, including personnel information and student information. Some of the files skimmed by DataBreaches, go back more than a decade. DataBreaches has not really begun analyzing the files yet, but it would appear that the college will have a lot of notifications to make.

 

Category: Education SectorMalwareU.S.

Post navigation

← Bits ‘n Pieces (Trozos y Piezas)
Florida city water cyber incident allegedly caused by employee error →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Ireland’s Data Protection Commission publishes 2024 Annual Report
  • The headlines suggested Freedman Healthcare suffered a ransomware attack that affected patient data. The reality was quite different.
  • Runsafe report: Medical device cyberattacks threaten patient care, strain budgets, top concern for healthcare sector
  • Ryuk ransomware’s initial access expert extradited to the U.S. from Ukraine
  • Alleged Geisinger hacker will defend himself pro se.
  • Tallahassee Memorial Healthcare reveals it was also impacted by Cerner/Legacy Oracle cyberattack
  • Hospital cyberattack investigation complete, no formal review needed (1)
  • Largest Ever Seizure of Funds Related to Crypto Confidence Scams
  • IMPACT: 170 patients harmed as a result of Qilin’s ransomware attack on NHS vendor Synnovis
  • DOJ’s Data Security Program: Key Compliance Considerations for Impacted Entities

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • US Judge Invalidates Biden Rule Protecting Privacy for Abortions
  • DOJ’s Data Security Program: Key Compliance Considerations for Impacted Entities
  • 23andMe fined £2.31 million for failing to protect UK users’ genetic data
  • DOJ Seeks More Time on Tower Dumps
  • Your household smart products must respect your privacy – including your air fryer
  • Vermont signs Kids Code into law, faces legal challenges
  • Data Categories and Surveillance Pricing: Ferguson’s Nuanced Approach to Privacy Innovation

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.