DisclosureLens
MalwareProfessional ServicesRansomwareCustomer Data InvolvedGovernment IDHighResolved

Black, Gould & Associates

bd_0479658b2be9cddb · schema v1 · pii pii-v1

Severity

High

Discovered

Oct 13, 2022

Filed

Dec 5, 2022

To disclose

8 weeks

Affected · nationwide

42,5683 in this filing

Linked

5 filings

Confidence

50%
Full breach record for Black, Gould & Associates

Black, Gould & Associates, Inc. experienced a ransomware attack between August 31 and September 10, 2022, discovered on October 13, 2022. The breach compromised personal identifiers along with Social Security Numbers, affecting 3 Maine residents. The company provided affected individuals with one year of credit monitoring and identity protection services through IDX.

Maine clockDiscovered Oct 13, 2022Filed with AG Dec 5, 202253d ME AG >30d8 weeks discovery → filing
AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.

Incident timeline

undetected · 43 days
discovery → filing · 8 weeks / 53 days

Aug 31, 2022

Begins

Oct 13, 2022

Discovered

Dec 5, 2022

Filed

This filing is one of 5 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (4) · sorted by filing gap

Filing propagation · 5 filings · 5 states

View merged incident ↗
Indiana State AGDec 5 · first
California State AGDec 5 · first
Montana State AGDec 5 · first
Maine State AGDec 5 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.