MalwareRansomwareData EncryptedRansom DemandedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
GERSON LEHRMAN GROUP, INC.
bd_8477b7863a376585 · schema v1 · pii pii-v1
Full breach record for GERSON LEHRMAN GROUP, INC. →Gerson Lehrman Group (GLG) disclosed a ransomware incident on November 12, 2023, where an unauthorized third party accessed its computer systems. GLG activated its incident response plan, engaged cybersecurity firms, and hardened systems. The breach potentially impacted names and government identifiers (e.g., SSN) for individuals in multiple states, including Vermont and Rhode Island. GLG offered complimentary credit monitoring via CyEx Identity Defense Total.
Vermont clock✗ VT AG >45 bday17 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_30321db2548f181fOregon State AGfiled 2024-03-12Candidate
- bd_40f515c14974b085Maine State AGfiled 2024-03-12Verified
- bd_690a00405f09498bCalifornia State AGfiled 2024-03-12Verified
- bd_6a5c413bc2a8a110Montana State AGfiled 2024-03-12Verified by operator
Show 2 more filings ↓Show fewer ↑
- bd_956c9ae2eb034ab4New Hampshire State AGfiled 2024-03-12Verified
- bd_a6d110a2d0e02830Washington State AGfiled 2024-03-12Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-03-12-gerson-lehrman-group-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 12, 2024
- Raw hash
- 74107ac21545fc395714ab70aecf6f03a708f2266f2d9669f2d127a0123bc732
Reporting entity
- Name
- GERSON LEHRMAN GROUP, INC.norm: gerson lehrman
Victim entity
- Name
- GERSON LEHRMAN GROUP, INC.norm: gerson lehrman
Incident
- Discovered
- Nov 12, 2023
- Materiality determined
- —
- Notification sent
- Mar 12, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 17 weeks(121 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.