DisclosureLens
MalwareProfessional ServicesProfessional ServicesRansomwareData EncryptedCustomer Data InvolvedIdentity (basic)Government IDMediumContained

Kingsley and Kingsley Lawyers

bd_f0918a57511e7280 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Aug 22, 2021

Filed

Apr 15, 2022

To disclose

34 weeks

Affected

Not disclosed

Linked

7 filings

Confidence

65%
Full breach record for Kingsley and Kingsley Lawyers

Kingsley and Kingsley Lawyers experienced a ransomware attack on August 21-22, 2021, affecting two servers. The attacker encrypted data, potentially accessing PII including names and Social Security numbers. The firm disconnected the servers, engaged forensic investigators, and notified law enforcement. Affected individuals were offered one year of identity monitoring via Kroll.

Incident timeline

undetected · 1 days
discovery → filing · 34 weeks / 236 days

Aug 21, 2021

Begins

Aug 22, 2021

Discovered

Apr 15, 2022

Filed

vs. sector median

+15 wks slower

This filing is one of 7 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (6) · sorted by filing gap

Show 2 more filingsup to 14d gap

Filing propagation · 7 filings · 7 states

View merged incident ↗
Indiana State AGApr 1 · first
Montana State AGApr 1 · first
California State AG+14d · this page

Pattern: first filing Apr 1 (IN), last Apr 18 (NH) — a 17-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.