HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
The CCIM Institute
bd_b45f3d91ca77f567 · schema v1 · pii pii-v1
Full breach record for The CCIM Institute →The CCIM Institute notified the Maryland Attorney General of a data event affecting 11 Maryland residents. Unauthorized access occurred July 12-13, 2024, when an unknown actor accessed and copied files containing names, SSNs, financial account info, and driver's license numbers. The Institute discovered the activity on July 15, 2024, and provided notice to affected individuals on January 24, 2025, offering 24 months of credit monitoring through Experian.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed11 affectedView incident
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376233.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 13, 2025
- Raw hash
- 727d08dbb7f13b4bd50863958a9f278e1ec1004abba8c7fc694e5232ea307b99
Reporting entity
- Name
- Mullen Coughlin LLCnorm: mullen coughlin
Victim entity
- Name
- The CCIM Institutenorm: the ccim institute
- Domain
- ccim.com
Incident
- Discovered
- Jul 15, 2024
- Materiality determined
- —
- Notification sent
- Jan 24, 2025
- Affected individuals
- 11
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1119 Automated Collection
- Threat actor
- External
Compliance
- Time to disclose
- 16 months(486 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.