DisclosureLens
Social EngineeringProfessional ServicesProfessional ServicesPhishingCustomer Data InvolvedIdentity (basic)Government IDHealth (basic)Financial accountMediumContained

Grandizio Wilkins Little & Matthews, LLP

bd_35b3a7fba97c5d33 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Jun 7, 2021

Filed

Jan 14, 2022

To disclose

32 weeks

Affected

Not disclosed

Linked

6 filings

Confidence

66%
Full breach record for Grandizio Wilkins Little & Matthews, LLP

Grandizio Wilkins Little & Matthews, LLP disclosed a data security incident involving unauthorized access to an employee's email account. The breach, discovered on June 7, 2021, potentially exposed personal information including names, SSNs, medical info, driver's license info, and financial/payment card data. GWLM engaged cybersecurity experts and IDX for credit monitoring services, notifying affected individuals in January 2022.

Incident timeline

discovery → filing · 32 weeks / 221 days

Jun 7, 2021

Discovered

Jan 14, 2022

Filed

vs. sector median

+13 wks slower

This filing is one of 6 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (5) · sorted by filing gap

Show 1 more filingup to 28d gap

Filing propagation · 6 filings · 5 states

View merged incident ↗
Delaware State AGDec 17 · first
Delaware State AG+28d · this page

Pattern: first filing Dec 17 (DE), last Jan 14 (DE) — a 28-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.