AccidentalMisdeliveryCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
WILMER CUTLER PICKERING HALE AND DORR LLP
bd_0f58950e180387e0 · schema v1 · pii pii-v1
Full breach record for WILMER CUTLER PICKERING HALE AND DORR LLP →On May 8, 2026, Wilmer Cutler Pickering Hale and Dorr LLP mistakenly provided personal information, including names and Social Security Numbers, to an unauthorized third party who misrepresented their identity. The firm promptly investigated, retained forensic experts, and notified federal law enforcement. The incident was isolated, with no direct system access by the third party. Affected individuals are offered 24 months of credit monitoring and identity theft protection through Experian.
California clockDiscovered May 8, 2026 → Notified Jul 10, 202663d ✗ CA 30-day late9 weeks discovery → filing
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_9b30d53ab5f53287Vermont State AGfiled 2026-07-10Verified
- bd_a307582915e1b0dcNew Hampshire State AGfiled 2026-07-10Verified
- bd_87849f3a47c4a66eTexas State AGfiled 2026-07-14(4d gap)Candidate
- bd_39ac1dd623acd6eeMassachusetts State AGfiled 2026-07-01(9d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 9d gap
- bd_88b9137fcfba81daMassachusetts State AGfiled 2026-07-01(9d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-626307
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 10, 2026
- Raw hash
- 581c1bcf4b25129a49cf9c4e6055ab3e2c028947eb6e6634b14efccca9c5df83
Reporting entity
- Name
- WILMER CUTLER PICKERING HALE AND DORR LLPnorm: wilmer cutler pickering hale and dorr
Victim entity
- Name
- WILMER CUTLER PICKERING HALE AND DORR LLPnorm: wilmer cutler pickering hale and dorr
Incident
- Discovered
- May 8, 2026
- Materiality determined
- —
- Notification sent
- Jul 10, 2026
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unknown
- Threat actor
- External
- Regulator citations
- Notified federal law enforcement authorities
Compliance
- Time to disclose
- 9 weeks(63 days from discovery to filing)
- Compliance flags
- CA 30-day late · 63dCA AG copy ≤15d · 0d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: May 8, 2026→ Notified: Jul 10, 202663d 30 calendar days CA 30-day late California Consumers notified: Jul 10, 2026→ AG copy submitted: Jul 10, 20260d 15 calendar days CA AG copy ≤15d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.