DisclosureLens
MalwareFinancial ServicesTechnologyFinanceRansomwareStolen CredentialsVulnerability ExploitData ExfiltratedData EncryptedCustomer Data InvolvedMulti-Stage ChainSupply Chain (3P Vendor)Identity (basic)Government IDFinancial accountHealth (basic)PHICriticalContained

Landmark Admin

bd_473e2e2588c35528 · schema v1 · pii pii-v1

Severity

Critical

Discovered

May 13, 2024

Filed

Apr 11, 2025

To disclose

48 weeks

Affected · nationwide

1,613,7731,528 in this filing

Linked

16 filings

Confidence

66%
Full breach record for Landmark Admin9 incidents on file

Landmark Admin, LLC, a third-party administrator for insurance carriers, reported a multi-stage cybersecurity incident discovered May 13, 2024. Attackers gained access via VPN using valid credentials, installed a backdoor on a third-party backup appliance, encrypted systems, and exfiltrated data. The incident affected approximately 1.6 million individuals nationwide, including 1,528 Maine residents. Data potentially compromised included names, SSNs, driver's licenses, bank account numbers, and health information. Landmark engaged forensic investigators, enhanced security controls (MFA, new firewall, server hardening), and offered 12 months of credit monitoring and identity theft protection.

Maine clockDiscovered May 13, 2024Filed with AG Apr 11, 2025333d ME AG >90d48 weeks discovery → filing
occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.

Incident timeline

discovery → filing · 48 weeks / 333 days

May 13, 2024

Begins

May 13, 2024

Discovered

Apr 11, 2025

Filed

vs. sector median

+39 wks slower

This filing is one of 16 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (10) · sorted by filing gap

Show 6 more filingsup to 170d gap

Showing first 10 of 15 linked disclosures.

Filing propagation · 11 filings · 8 states

View merged incident ↗
Oregon State AGOct 23 · first
Indiana State AGOct 23 · first
Maine State AGOct 23 · first
California State AGOct 23 · first
Washington State AGOct 23 · first
Delaware State AGOct 23 · first
Vermont State AGOct 23 · first
Maine State AG+170d · this page

Pattern: first filing Oct 23 (OR), last Apr 11 (ME) — a 170-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Cascade drawn from the first 10 linked disclosures of 15 — the full spread may be wider.

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.