Ransomware victim disclosure
← All victimsRichland-Bean Blossom Community School Corporation
listed as rbbschools.net · Claimed by Blacksuit · listed 2 years ago
Status timeline
- ListedJun 25, 2024
- Data leakeddate unknown
At a glance
- Group
- Blacksuit
- Status
- Data leaked
- Country
- United States
- Sector
- Government
- Listed on leak site
- Jun 25, 2024
- Ransom demanded
- $1M
About the victim
AI dossier — public-source company profileRichland-Bean Blossom Community School Corporation (branded as Edgewood Schools) operates a public school district in Indiana serving students from early childhood through high school. The district includes five schools and offers academic programs, athletics, and extracurricular activities to the local community.
- Industry
- Public K-12 Education
- Employees
- 51-100
Attack summary
Severity: high — Public school district targeted with confirmed data exfiltration (published on leak site). Exposure of student and staff PII constitutes sensitive personal data at scale affecting minors and their families. Operational disruption to critical educational infrastructure.Blacksuit claims to have encrypted systems and exfiltrated data from the school district. The group is demanding $1M ransom and has published the victim on their leak site, indicating data exfiltration.
Data the group says was taken
AI dossier — extracted from the leak post- Student records
- Staff information
- Parent contact details
- Financial records
- Administrative documents
What the group claims
Edgewood Schools is a company that operates in the Education industry. It employs 51-100 people and has $1M-$5M of revenue.
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

