MalwareRansomwarePlayData ExfiltratedData PublishedRansom DemandedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNTMediumContained
Mainelli Mechanical Contractors
bd_6351e1a7751f5dbd · schema v1 · pii pii-v1
Full breach record for Mainelli Mechanical Contractors →Mainelli Mechanical Contractors, Inc. notified the Maryland AG of a ransomware incident involving the 'Play' group on or about October 17, 2024. The attack may have exposed PII including SSNs, driver's licenses, medical info, and financial account numbers. One Maryland resident was affected. The company engaged outside cybersecurity experts, contained the threat, and is offering one year of credit monitoring.
Maryland clock✗ MD AG >90d18 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 2 about the same incident.View merged incident
A leak claim by play about this victim predates this filing by 124 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_b13d9e0909e9bb91Leak Siteplayfiled 2024-10-18(124d gap)Verified
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376379.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 19, 2025
- Raw hash
- a6a11c08127fa9a1a8fc49f9a5c3eaedaf0147f31b4c828d89a70859a62aff7e
Reporting entity
- Name
- Mainelli Mechanical Contractorsnorm: mainelli mechanical contractors
- Domain
- mainellimechanical.com
Victim entity
- Name
- Mainelli Mechanical Contractorsnorm: mainelli mechanical contractors
- Domain
- mainellimechanical.com
Incident
- Discovered
- Oct 17, 2024
- Materiality determined
- Feb 18, 2025
- Notification sent
- Feb 19, 2025
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNT
- Attack vector
- Ransomware· Play
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1190 Exploit Public-Facing Application
- Threat actor
- PlayExternalFinancial
- Regulator citations
- Notified Maryland Attorney General
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 18 weeks(125 days from discovery to filing)
- Compliance flags
- MD AG >90dLeak >90d
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.