CUSHMAN & WAKEFIELD, INC.
bd_27631192cebaf070 · schema v1 · pii pii-v1
Full breach record for CUSHMAN & WAKEFIELD, INC. →2 incidents on fileCushman & Wakefield notified the NH Attorney General of a data security incident affecting 4 New Hampshire residents. On April 29, 2026, the company became aware of unauthorized access to its network by a third party who exfiltrated certain files. The affected data included names and potentially other personal information. The company engaged third-party cybersecurity experts, reset credentials, implemented heightened monitoring, and notified law enforcement. Affected individuals are offered 24 months of complimentary Experian IdentityWorks.
J jump to incidentP pin to compareR raw source
Incident timeline
Apr 29, 2026
Discovered
Aug 7, 2026
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Ransomware claims (2)
- Leak Siteshinyhuntersbd_94dad4d39b7268ca2026-05-03 · +96dVerified by operator
- Leak Siteqilinbd_f94238367dc882872026-05-03 · +96dVerified by operator
Regulatory filings (4) · sorted by filing gap
- Vermont State AGbd_1baa16367dbbe7a12026-08-07Verified by operator
- California State AGbd_ad8121b21cc043a92026-08-07Verified by operator
- Massachusetts State AGbd_cdf44100b3bfaed92026-08-07Verified by operator
- Pressshinyhuntersbd_73d80c5e639295172026-04-29 · +100dCandidate
Filing propagation · 5 filings · 4 states
View merged incident ↗Pattern: first filing Apr 29, last Aug 7 (NH) — a 100-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.