The CCIM Institute
bd_76b813a37a9919b6 · schema v1 · pii pii-v2
Full breach record for The CCIM Institute →The CCIM Institute reported a data event in Nebraska where an unknown actor accessed and copied files containing names, SSNs, and financial/payment card data between July 12-13, 2024. The Institute discovered suspicious activity on July 15, 2024, and notified 22 Nebraska residents on January 24, 2025. Response included system security, investigation, credit monitoring via Experian, and employee training.
J jump to incidentP pin to compareR raw source
Incident timeline
Jul 12, 2024
Begins
Jul 15, 2024
Discovered
Jan 24, 2025
Filed
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- New Hampshire State AGbd_32e0da482b2a4a092025-01-24Verified
- Massachusetts State AGbd_9fb91ca0c53f816a2025-01-24Verified
- Indiana State AGbd_da3b0c62a4cd52462025-01-24Candidate
- Maine State AGbd_ea4c8e5ac5ff74402025-01-24Verified
Show 1 more filing ↓Show fewer ↑up to 293d gap
- Maryland State AGbd_b45f3d91ca77f5672025-11-13 · +293dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing Jan 24 (NH), last Nov 13 (MD) — a 293-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.