Cerenade Technology
bd_a0db61eb4b84b908 · schema v1 · pii pii-v1
Full breach record for Cerenade Technology →2 incidents on fileCerenade, a software system used by legal organizations, notified Massachusetts residents of a security breach occurring on October 2-3, 2025. The incident involved the possible unauthorized acquisition of personal information, including names, addresses, and Social Security numbers. The company is offering 24 months of identity theft protection services through IDX. No specific attack vector or threat actor was identified in the notice.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 2, 2025
Begins
Jan 23, 2026
Filed
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Siteakirabd_ad3279a4698fd2dd2025-10-08 · +107dVerified
Regulatory filings (4) · sorted by filing gap
- Indiana State AGbd_d1ca9bb4f1b6f99d2026-02-06 · +14dVerified
- Texas State AGbd_fafdc1f3176134532026-02-09 · +17dVerified
- California State AGbd_4d5c7ac14c6ba36a2026-01-02 · +21dVerified by operator
- Indiana State AGbd_1349f0361497e5f92026-03-03 · +39dVerified
Filing propagation · 5 filings · 4 states
View merged incident ↗Pattern: first filing Jan 2 (CA), last Mar 3 (IN) — a 60-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.