MalwareIDENTITY_BASICIDENTITY_GOVERNMENTPIIMediumContained
Carlysle Engineering, Inc.
bd_ea8abc29297e1932 · schema v1 · pii pii-v1
Full breach record for Carlysle Engineering, Inc. →Carlysle Engineering, Inc. disclosed a ransomware attack on March 23, 2026, affecting its primary file server. The incident resulted in the encryption of files and exfiltration of employee HR data, including names, SSNs, and driver's license numbers. Carlysle engaged OCD Tech for forensic investigation and containment, shut down affected connections, and is offering 24 months of identity theft protection to affected employees. The breach notification was filed in Massachusetts on May 14, 2026.
Massachusetts clock⏱ MA AG >30d6 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_ad4dba05a8f20d9fMaine State AGfiled 2026-05-14(13d gap)Verified
Source provenance
- Source URL
- https://www.mass.gov/doc/2026-781-carlysle-engineering-inc/download
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 1, 2026
- Raw hash
- 4e84e35a3ddf5507bee772526aeb74a2b7ab9fcb3ac6d173b4824abcd0227f93
Reporting entity
- Name
- Carlysle Engineering, Inc.norm: carlysle engineering
Victim entity
- Name
- Carlysle Engineering, Inc.norm: carlysle engineering
Incident
- Discovered
- Mar 23, 2026
- Materiality determined
- —
- Notification sent
- May 14, 2026
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTPII
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 6 weeks(39 days from discovery to filing)
- Compliance flags
- MA AG >30d
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.