DisclosureLens
MalwareRetail & ConsumerRetailRansomwareStolen CredentialsMulti-Stage ChainData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedPIIIdentity (basic)Government IDMediumActive

EDW. C. Levy Co.

bd_a726a2229de3cf78 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Nov 1, 2023

Filed

Jan 17, 2025

To disclose

15 months

Affected

1state residents only

Linked

5 filings

Confidence

67%
Full breach record for EDW. C. Levy Co.3 incidents on file

Edw. C. Levy Co. notified the NH Attorney General of a ransomware attack discovered on Nov 1, 2023. The incident involved unauthorized access to employee files and an email account. One New Hampshire resident's PII (including SSN) was potentially exposed. Notice was sent to the resident on Jan 16, 2025, offering credit monitoring. Investigation remains ongoing.

Incident timeline

discovery → filing · 15 months / 443 days

Nov 1, 2023

Discovered

Jan 17, 2025

Filed

vs. sector median

+56 wks slower

This filing is one of 5 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (4) · sorted by filing gap

Filing propagation · 5 filings · 5 states

View merged incident ↗
Montana State AGJan 16 · first
Nebraska State AGJan 16 · first
New Hampshire State AG+1d · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.