DisclosureLens
HackingTechnologyInformationCustomer Data InvolvedEmployee Data InvolvedIdentity (basic)Government IDFinancial accountEmploymentPIIMediumContained

Tentamus Group GmbH

bd_6c5a5261e2119ef8 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Mar 13, 2023

Filed

Apr 11, 2023

To disclose

29 days

Affected

4state residents only

Confidence

66%
Full breach record for Tentamus Group GmbH

Tentamus Group GmbH notified affected individuals of a cybersecurity attack on March 13, 2023, that exposed personal information of current and former employees. Data accessed included names, SSNs, DOBs, addresses, bank account numbers, and tax documents. The company engaged law enforcement, locked out unauthorized users, retained Kroll for forensic investigation, and provided 12 months of identity monitoring.

Incident timeline

discovery → filing · 29 days

Mar 13, 2023

Begins

Mar 13, 2023

Discovered

Apr 11, 2023

Filed

vs. sector median

14 wks faster

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed4 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.