MalwarePhishingRansomwareData EncryptedData ExfiltratedMulti-Stage ChainIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Gulshan Management Services
bd_62380f5de3719fcb · schema v1 · pii pii-v1
Full breach record for Gulshan Management Services →Gulshan Management Services, Inc. (GMS) disclosed a cybersecurity incident in South Carolina. On September 17, 2025, an unauthorized third party gained access via a phishing attack. The actor accessed servers hosting personal data (names, contact info, SSNs, driver's license numbers) and deployed ransomware encrypting portions of the network. GMS contained the incident, rebuilt systems using safe backups, reset credentials, and engaged Kroll for 12 months of identity monitoring. Law enforcement was notified.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_217671fec1634ed9Maine State AGfiled 2026-01-06Verified
- bd_24f2f711ac332f95Iowa State AGfiled 2026-01-06Verified
- bd_4d1d56b0a51c0c71Vermont State AGfiled 2026-01-05(1d gap)Verified
- bd_78a97382f455f091Indiana State AGfiled 2026-01-05(1d gap)Candidate
Show 2 more filings ↓Show fewer ↑up to 69d gap
- bd_a465700a822b3c12New Hampshire State AGfiled 2026-01-05(1d gap)Verified
- bd_98d92f168972093aTexas State AGfiled 2026-03-16(69d gap)Verified
Source provenance
- Source URL
- https://consumer.sc.gov/sites/consumer/files/Documents/Security%20Breach%20Notices/2026/Consumer%20Letter%20-%20Gulshan%20Management%20Services%2C%20Inc..pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 6, 2026
- Raw hash
- 13dbba2e1fcb6e1c46ee6644426e532c107514d727bff4a49e5147b134367298
Reporting entity
- Name
- Gulshan Management Servicesnorm: gulshan management
Victim entity
- Name
- Gulshan Management Servicesnorm: gulshan management
Incident
- Discovered
- Sep 27, 2025
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified law enforcement and regulatory authorities in relevant jurisdictions
- Initial access
- phishing_link
Compliance
- Time to disclose
- 14 weeks(101 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.