Log in

NEWS

Arizona, software company settle for $49.5M in data breach

Attorney General Kris Mayes on Thursday announced that her office, along with 49 other state attorneys general, has reached a settlement with software company Blackbaud for its deficient data security practices.

You must be a member to read this story.

Join our family of readers for as little as $5 per month and support local, unbiased journalism.


Already have an account? Log in to continue.

Current print subscribers can create a free account by clicking here

Otherwise, follow the link below to join.

To Our Valued Readers –

Visitors to our website will be limited to five stories per month unless they opt to subscribe. The five stories do not include our exclusive content written by our journalists.

For $6.99, less than 20 cents a day, digital subscribers will receive unlimited access to YourValley.net, including exclusive content from our newsroom and access to our Daily Independent e-edition.

Our commitment to balanced, fair reporting and local coverage provides insight and perspective not found anywhere else.

Your financial commitment will help to preserve the kind of honest journalism produced by our reporters and editors. We trust you agree that independent journalism is an essential component of our democracy. Please click here to subscribe.

Sincerely,
Charlene Bisson, Publisher, Independent Newsmedia

Please log in to continue

Log in
I am anchor
NEWS

Arizona, software company settle for $49.5M in data breach

Posted

Attorney General Kris Mayes on Thursday announced that her office, along with 49 other state attorneys general, has reached a settlement with software company Blackbaud for its deficient data security practices and for its response to a 2020 ransomware event that exposed the personal information of millions of consumers across the United States.

Under the settlement, Blackbaud has agreed to overhaul its data security and data breach notification practices and make a $49.5 million payment to states.

Arizona will receive more than $1.8 million from the settlement.

“In today’s digital world, companies must stringently safeguard data to ensure consumer privacy,” Mayes shared in a press release. “Bad actors will stop at nothing to exploit vulnerabilities, and it is incumbent upon companies like Blackbaud to be proactive, transparent, and accountable in their cybersecurity measures. The significant settlement we’ve reached not only holds Blackbaud accountable for past deficiencies but also ensures that consumers are better protected moving forward.”

Thursday’s settlement resolves allegations of the attorneys general that Blackbaud violated state consumer protection laws, data breach notification laws, and HIPAA by failing to implement reasonable data security and remediate known security gaps, which allowed unauthorized persons to gain access to Blackbaud’s network, and then failing to provide its customers with timely, complete, or accurate information regarding the breach, as required by law.

Share with others