According to the FTC, Blackbaud’s poor security breach in February 2020
(2020 article)
led to a hacker accessing the company’s customer databases and stealing personal information of millions of consumers in the United States, Canada, the UK, and the Netherlands.
Blackbaud’s affected customers are mainly non-profits, such as healthcare agencies, charities, and educational organizations.
As part of a settlement with the FTC, Blackbaud has been ordered to harden its security and delete unnecessary customer data.
Last year, Blackbaud agreed to pay a $3 million charge from the SEC for misleading disclosures about its ransomware attack
https://www.sec.gov/news/press-release/2023-48
Blackbaud agreed to pay $49.5 million to settle claims brought by the attorney generals of 49 US states and Washington DC.
https://apnews.com/article/blackbaud-data-breach-settlement-dba8fac12af30f74691c7af4fec69a14