Grellas Shah LLP
bd_50f122b56b1dddef · schema v1 · pii pii-v1
Full breach record for Grellas Shah LLP →Grellas Shah LLP experienced unauthorized access to certain employee email accounts between December 20, 2021, and March 28, 2022. The incident potentially exposed personal information including names, Social Security numbers, driver's license numbers, passport numbers, financial account numbers, payment card numbers, and medical information. The firm engaged a cybersecurity firm, secured the accounts, and offered credit monitoring to affected individuals.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 20, 2021
Begins
Sep 1, 2022
Filed
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- New Hampshire State AGbd_3ca83b0554b466cb2022-09-01Verified
- Indiana State AGbd_4a9d9d1978f1c6782022-09-01Verified
- Maine State AGbd_57d0ecb4ab2237332022-09-01Verified
- Montana State AGbd_a1a6335d399500ab2022-09-01Verified by operator
Show 1 more filing ↓Show fewer ↑
- Massachusetts State AGbd_bbba80dfc3d4fe7f2022-09-01Verified
Filing propagation · 6 filings · 6 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.