MalwareRansomwareRansom DemandedCustomer Data InvolvedIDENTITY_BASICLowContained
Glenwood Management Corp.
bd_645e1133be0a188c · schema v1 · pii pii-v1
Full breach record for Glenwood Management Corp. →Glenwood Management Corp. notified consumers of a cyber-attack discovered on September 10, 2025. The attacker likely sought financial gain. Personal information, including names, was accessed. Glenwood engaged forensic experts, notified law enforcement, and enhanced security monitoring. Affected individuals are offered 12 months of credit monitoring and fraud assistance through Cyberscout/TransUnion.
Leak gap clock✗ Leak >180d22 days discovery → filing
This filing is one of 3 about the same incident.View merged incident
A leak claim by dan0n about this victim predates this filing by 512 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_001653c86a18f60aIndiana State AGfiled 2025-10-02Verified
- bd_7291ead3383df0bbMaine State AGfiled 2025-10-02Candidate
Source provenance
- Source URL
- https://ago.vermont.gov/document/2025-10-02-glenwood-management-corp-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 2, 2025
- Raw hash
- 0cafeeb6bb1a0e3b387bffe5dd65a854533a56f40563bf4cea88b994a678fd73
Reporting entity
- Name
- Glenwood Management Corp.norm: glenwood management
Victim entity
- Name
- Glenwood Management Corp.norm: glenwood management
Incident
- Discovered
- Sep 10, 2025
- Materiality determined
- —
- Notification sent
- Oct 2, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified law enforcement
Compliance
- Time to disclose
- 22 days(22 days from discovery to filing)
- Compliance flags
- Leak >180dVT AG >14 bday
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.