Ransomware victim disclosure
← All victimsGaston College
Claimed by Snatch · listed 3 years ago
Status timeline
- ListedApr 2, 2023
- Data leakeddate unknown
At a glance
- Group
- Snatch
- Status
- Data leaked
- Country
- United States
- Sector
- Education
- Listed on leak site
- Apr 2, 2023
About the victim
AI dossier — public-source company profileGaston College is a public community college located in Dallas, North Carolina, part of the NC Community College System. It operates multiple campuses including the main Dallas/Kimbrell Campus and a Lincoln Campus, offering associate degree programs, continuing education, workforce development, and university transfer pathways. The college has grown from two buildings in 1964 to a multi-campus institution serving the Gaston County region.
- Industry
- Community College Education
- Address
- 201 Highway 321 South, Dallas, NC 28034
- Employees
- 201-500
- Founded
- 1964
Attack summary
Severity: high — Data has been published by the group against an educational institution that holds regulated student PII (FERPA-protected records), financial aid data, and employee information. Confirmed data publication elevates severity to high, with potential for critical if student PII is confirmed at scale.The Snatch ransomware group claims an attack on Gaston College and has published data (disclosed status: data_published), asserting exfiltration of institutional data; no ransom amount or specific data volume was stated in the post.
Data the group says was taken
AI dossier — extracted from the leak post- Student records
- Employee directory data
- Financial aid information
- Institutional administrative documents
- Academic records
What the group claims
Beginning with just two buildings in 1964, by the end of the 1970s a total of 10 buildings graced the Dallas, or main, Campus. Throughout the 1980s and 1990s, 11 more buildings were added. It was during the mid-1990s that the College’s Lincoln Campus was
Sources
Source
Indexed 3 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

