DisclosureLens
HackingProfessional ServicesProfessional ServicesData ExfiltratedData PublishedTargetedIdentity (basic)Government IDHealth (basic)PIIMediumContained

Kronick Moskovitz Tiedemann & Girard

bd_78a8971981b2e05c · schema v1 · pii pii-v1

Severity

Medium

Discovered

Aug 1, 2024

Filed

Mar 28, 2025

To disclose

34 weeks

Affected

Not disclosed

Linked

9 filings

Confidence

68%
Full breach record for Kronick Moskovitz Tiedemann & Girard5 incidents on file

Kronick, Moskovitz, Tiedemann & Girard, a California law firm, disclosed a cybersecurity incident in August 2024 involving unauthorized access by an unknown third party. The attacker accessed internal systems and exfiltrated personal information including names, SSNs, DOBs, driver's license numbers, and medical/health insurance data. The firm engaged forensic experts, reset credentials, and notified law enforcement. The attacker briefly posted data on a dark web site before it was removed. Kronick offered 24 months of Experian credit monitoring to affected individuals.

Vermont clock VT AG >45 bday34 weeks discovery → filing
unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.

Incident timeline

discovery → filing · 34 weeks / 239 days

Aug 1, 2024

Discovered

Mar 28, 2025

Filed

vs. sector median

+15 wks slower

This filing is one of 9 about the same incident.View merged incident
A leak claim by rhysida about this victim predates this filing by 234 days.View originating leak claim

Linked disclosures

Why this link?

Ransomware claims (2)

Regulatory filings (6) · sorted by filing gap

Show 2 more filingsup to 63d gap

Filing propagation · 7 filings · 4 states

View merged incident ↗
Massachusetts State AGJan 27 · first
Vermont State AG+60d · this page

Pattern: first filing Jan 27 (MA), last May 30 (CA) — a 123-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.