HackingCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
De Gruyter Brill, Inc
bd_de408cbc36b2697a · schema v1 · pii pii-v1
Full breach record for De Gruyter Brill, Inc →De Gruyter Brill, Inc. notified the New Hampshire Attorney General on March 9, 2026, of a breach discovered on February 4, 2026, where an unknown intruder gained unauthorized access to its computer system. The incident affected 3 New Hampshire residents, compromising names, addresses, dates of birth, and tax forms (W-9s, 1099s). The company engaged forensic analysts, notified law enforcement, and offered IDX identity protection services.
Leak gap clock⏱ Leak >30d5 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 4 about the same incident.View merged incident
A leak claim by play about this victim predates this filing by 37 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_a35b4b53d97c1608Leak Siteplayfiled 2026-01-31(37d gap)Verified by operator
Regulatory filings (2) · sorted by filing gap
- bd_455f45ef52b1b583Maine State AGfiled 2026-03-09Candidate
- bd_717b85126fa22b83Indiana State AGfiled 2026-03-10(1d gap)Verified by operator
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/de-gruyter-brill-20260309.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 9, 2026
- Raw hash
- 349a78c8356498a9f5c417b4345fffefe90568b17c6dc01b35668c57f41704dc
Reporting entity
- Name
- Marshall Denneheynorm: marshall dennehey
Victim entity
- Name
- De Gruyter Brill, Incnorm: de gruyter brill
- Domain
- degruyterbrill.com
Incident
- Discovered
- Feb 4, 2026
- Materiality determined
- —
- Notification sent
- Mar 10, 2026
- Affected individuals
- 3
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- Submitted data breach notification to New Hampshire Attorney General's Consumer Protection Bureau
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 5 weeks(33 days from discovery to filing)
- Compliance flags
- Leak >30d
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.