HackingStolen CredentialsData ExfiltratedIDENTITY_BASICLowContained
TUNNELL COMPANIES, LLC
bd_2491b0096ee79bb7 · schema v1 · pii pii-v1
Full breach record for TUNNELL COMPANIES, LLC →Tunnell Companies, LLC notified affected individuals in multiple states (DE, DC, MD, NY, NC) of a security incident occurring on August 18, 2025. An unauthorized actor accessed and downloaded files containing names and other personal information. The company engaged forensic specialists, secured its network, and offered 12 months of credit monitoring. No identity theft was indicated.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_a306f14cddb0b0cbIndiana State AGfiled 2026-05-21Verified by operator
- bd_b798c048ccc097b0Massachusetts State AGfiled 2026-05-01(20d gap)Candidate
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2026/05/Tunnell-Companies-LLC-Notice-of-Data-Event.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 21, 2026
- Raw hash
- 669f0c5869ff51c730eab94145c93d6bcfd00cfc5546ae84d61eed29749e20af
Reporting entity
- Name
- TUNNELL COMPANIES, LLCnorm: tunnell companies
Victim entity
- Name
- TUNNELL COMPANIES, LLCnorm: tunnell companies
Incident
- Discovered
- Aug 18, 2025
- Materiality determined
- —
- Notification sent
- May 21, 2026
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 39 weeks(276 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.