GOODWIN PROCTER LLP
bd_e223134300d8dc2d · schema v1 · pii pii-v1
Full breach record for GOODWIN PROCTER LLP →4 incidents on fileGoodwin Procter LLP, a law firm, notified affected individuals of a cybersecurity incident on June 8, 2026. On April 16, 2026, a single user account was compromised via social engineering (phishing). The unauthorized actor accessed client data, including names, Social Security numbers, and credit/debit card numbers. Goodwin disabled the account, engaged third-party experts, and notified law enforcement. No evidence of continued access was found. Two years of credit monitoring via Equifax was offered.
J jump to incidentP pin to compareR raw source
Incident timeline
Apr 16, 2026
Begins
Apr 16, 2026
Discovered
Jun 11, 2026
Filed
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Indiana State AGbd_4cb0a53fd8c5954c2026-06-11Candidate
- Massachusetts State AGbd_8b0c1d6ea75a01cf2026-06-11Verified
- New Hampshire State AGbd_169c974ce853c1482026-06-22 · +11dVerified
- Texas State AGbd_e606468cb7b5688a2026-07-31 · +50dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Pattern: first filing Jun 11 (IN), last Jul 31 (TX) — a 50-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.