DisclosureLens
HackingProfessional ServicesProfessional ServicesData ExfiltratedCustomer Data InvolvedIdentity (basic)Government IDMediumContained

Gearhiser, Peters, Elliot, & Cannon PLLC

bd_d0f2b935dcc1b9f6 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Apr 24, 2025

Filed

Mar 16, 2026

To disclose

Affected

13state residents only

Linked

5 filings

Confidence

66%
Full breach record for Gearhiser, Peters, Elliot, & Cannon PLLC2 incidents on file

Gearhiser, Peters, Elliott & Cannon, PLLC (GPEC) notified Nebraska residents of a cybersecurity incident where an unauthorized third party accessed GPEC systems on April 22, 2025. The breach potentially exposed names, Social Security numbers, and driver's license numbers of 13 Nebraska residents. GPEC contained the network, engaged outside professionals for investigation, and provided 12 months of credit monitoring via IDX to affected individuals. No evidence of fraud was found.

Incident timeline

undetected · 2 days

Apr 22, 2025

Begins

Apr 24, 2025

Discovered

Mar 16, 2026

Filed

This filing is one of 5 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (4) · sorted by filing gap

Filing propagation · 5 filings · 5 states

View merged incident ↗
Indiana State AGMar 16 · first
New Hampshire State AGMar 16 · first
Massachusetts State AGMar 16 · first
Vermont State AGMar 16 · first
Nebraska State AGMar 16 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.