Dubroff, Easley, & Lovell LLP
bd_5912efad5dc393f6 · schema v1 · pii pii-v1
Full breach record for Dubroff, Easley, & Lovell LLP →Dubroff, Easley & Lovell, LLP notified Massachusetts residents that an unauthorized party acquired files from their network between September 2 and September 22, 2025. The firm discovered the incident on September 22, 2025, and determined on March 3, 2026, that personal data may have been included. The firm engaged outside cybersecurity professionals and is offering identity monitoring services through Kroll.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 2, 2025
Begins
Sep 22, 2025
Discovered
Mar 25, 2026
Filed
vs. sector median
+8 wks slower
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Sitepearbd_abb6058660ab68ae2025-09-15 · +191dVerified by operator
Regulatory filings (3) · sorted by filing gap
- Indiana State AGbd_4507d9e65064bf7d2026-03-25Verified
- California State AGbd_a2c042a9bbba73842026-03-25Verified
- California State AGbd_4fb87386ff7a5afc2025-11-26 · +119dVerified
Filing propagation · 4 filings · 3 states
View merged incident ↗Pattern: first filing Nov 26 (CA), last Mar 25 (MA) — a 119-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.