DisclosureLens
MalwareProfessional ServicesProfessional ServicesRansomwareData EncryptedCustomer Data InvolvedGovernment IDFinancial accountMediumContained

Massachusetts Continuing Legal Education, Inc.

bd_1025f84d5e48ee30 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Mar 20, 2021

Filed

Jul 21, 2021

To disclose

18 weeks

Affected

5state residents only

Linked

3 filings

Confidence

66%
Full breach record for Massachusetts Continuing Legal Education, Inc.

Massachusetts Continuing Legal Education (MCLE) experienced a ransomware attack starting March 20, 2021, where an unauthorized third party accessed and encrypted systems. The attacker potentially accessed PII including social security numbers, driver's license numbers, and credit card numbers of five New Hampshire residents. MCLE restored systems without paying ransom, engaged forensic experts, reset credentials, enabled MFA, and is offering 24 months of credit monitoring.

Incident timeline

discovery → filing · 18 weeks / 123 days

Mar 20, 2021

Begins

Mar 20, 2021

Discovered

Jul 21, 2021

Filed

vs. sector median

1 wks faster

This filing is one of 3 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (2) · sorted by filing gap

Filing propagation · 3 filings · 3 states

View merged incident ↗
Maine State AGJul 19 · first
New Hampshire State AG+2d · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.