Cresset
bd_9e98b866ff9bd18d · schema v1 · pii pii-v1
Full breach record for Cresset →Cresset Capital Management, LLC notified affected individuals of a cybersecurity incident discovered on April 6, 2026. The breach involved unauthorized access to personal information including names, SSNs, driver's license numbers, and financial account data. Cresset contained the incident, engaged third-party cybersecurity professionals, and is offering one year of complimentary credit monitoring via Experian IdentityWorks. The notification covers residents in multiple states, including Nebraska, New York, and Massachusetts.
J jump to incidentP pin to compareR raw source
Incident timeline
Apr 6, 2026
Discovered
May 14, 2026
Filed
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- California State AGbd_6b53a0819e2ea55e2026-05-14Candidate
- Massachusetts State AGbd_83b0c21fbe5d3d5f2026-05-14Verified
- Montana State AGbd_9d27f553a37e12602026-05-14Verified
- Texas State AGbd_3a508ac5b53418282026-05-15 · +1dVerified
Show 2 more filings ↓Show fewer ↑up to 88d gap
- Illinois State AGbd_70a43b00671d7fc02026-05-01 · +13dVerified
- Texas State AGbd_9ea29ceebe3e128f2026-08-10 · +88dVerified
Filing propagation · 7 filings · 6 states
View merged incident ↗Pattern: first filing May 1 (IL), last Aug 10 (TX) — a 101-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.