HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICLowContained
THOMPSON COBURN LLP
bd_bc01038a5aee99bd · schema v1 · pii pii-v1
Full breach record for THOMPSON COBURN LLP →Thompson Coburn LLP experienced unauthorized access to its network between May 28 and May 29, 2024. The firm became aware of suspicious activity on May 29, 2024. An investigation determined that an unauthorized actor viewed or took certain information, including names and potentially other personal data, from files stored in the firm's environment. The firm engaged third-party forensic specialists, reviewed affected files, implemented additional cybersecurity measures, and is offering credit monitoring to impacted individuals.
This filing is one of 8 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- bd_32b01e9f0204bad6Montana State AGfiled 2025-04-30Verified
- bd_4e74aaeebe6a0954Indiana State AGfiled 2025-04-30Verified
- bd_701bdfa64bf675abMaine State AGfiled 2025-04-30Verified
- bd_7de9090db5f14f60Vermont State AGfiled 2025-04-30Verified
Show 3 more filings ↓Show fewer ↑up to 120d gap
- bd_f2a4f37f8236c752New Hampshire State AGfiled 2025-04-30Verified
- bd_0f38d2bde5ce25bdNew Hampshire State AGfiled 2024-12-31(120d gap)Verified
- bd_70cecde1c10634aaVermont State AGfiled 2024-12-31(120d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-602081
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 30, 2025
- Raw hash
- d4745f9d07a955d6a402e89078109654a68135dd7f8496acba1e44b9a9454be6
Reporting entity
- Name
- THOMPSON COBURN LLPnorm: thompson coburn
- Domain
- thompsoncoburn.com
Victim entity
- Name
- THOMPSON COBURN LLPnorm: thompson coburn
- Domain
- thompsoncoburn.com
Incident
- Discovered
- May 29, 2024
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
Compliance
- Time to disclose
- 48 weeks(336 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.