Graebel Companies, Inc.
ent_69c49fb513613ab49cb4c496
Disclosures
11
State AG · 8 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
5,573
nationwide · State AG TX
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Graebel Companies, Inc.
- Normalized
- graebel companies— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (11)newest first
- Vermont State AGas victim2026-04-03
Graebel Companies, Inc., a relocation management company, experienced a cybersecurity incident where files were accessed or taken from its network between December 19 and December 22, 2024. The company notified approximately 4 Vermont residents in March 2026. The incident involved personal and employment information. Graebel secured its network, conducted an investigation, implemented additional cybersecurity measures, and offered 24 months of credit monitoring.
- New Hampshire State AGas victim2026-04-03
Graebel Companies, Inc. filed a supplemental notice with the New Hampshire Attorney General regarding a cybersecurity incident occurring between December 19 and 22, 2024. The incident involved unauthorized access to files containing client PII (names, addresses). Approximately 12 New Hampshire residents were notified. Graebel secured its network, engaged in an investigation, reported to federal law enforcement, and offered 24 months of credit monitoring via TransUnion.
- Maine State AGas victim2026-04-03
Graebel Companies, Inc. reported a supplemental data breach to the Maine Attorney General. The incident occurred between Dec 19-22, 2024, and was discovered on Oct 24, 2025. It involved unauthorized access to the network, affecting 17 Maine residents. Graebel reported the incident to federal law enforcement and offered 24 months of credit monitoring via TransUnion.
- Texas State AGas victim2025-11-12
Graebel Companies, Inc. based in Aurora, Colorado, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2025-10-13 and reported on 2025-11-12. 267 Texas residents were affected. 5,573 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Financial Information (e.g. account number, credit or debit card number). Consumers were notified via Posted at company website or special website;U.S. Mail.
- Maine State AGas victim2025-11-10
Graebel Companies, Inc. reported an external system breach (hacking) occurring between December 19-22, 2024, discovered on October 24, 2025. The incident affected 15 Maine residents, involving identity basic and government identifiers. Graebel secured its network, engaged in investigation, notified clients and federal law enforcement, and provided 24 months of credit monitoring via TransUnion.
- New Hampshire State AGas victim2025-11-10
Graebel Companies, Inc. notified the NH Attorney General of a cybersecurity incident where files were accessed or taken from its network between December 19-22, 2024. The incident affected approximately 18 New Hampshire residents, exposing financial account numbers and Social Security numbers. Graebel implemented additional security measures and offered 24 months of credit monitoring.
- Indiana State AGas victim2025-11-10
Graebel Companies Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2024-12-19 and was reported on 2025-11-10. 89 Indiana residents were affected. 5,573 individuals affected in total.
- Vermont State AGas victim2025-11-10
Graebel Companies, Inc., a relocation management company, experienced a cybersecurity incident between December 19 and 22, 2024, where certain files were accessed or taken from its network. The company secured its network, conducted an investigation, and implemented additional cybersecurity measures. Affected individuals are being offered 24 months of complimentary credit monitoring and identity theft protection through TransUnion. No identity theft or fraud has been reported to date.
- Massachusetts State AGas victim2025-11-10
Graebel Companies, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-11-10. 92 Massachusetts residents were affected.
- Nebraska State AGas victim2025-11-10
Graebel Companies, Inc. reported a cybersecurity incident to Nebraska regulators in November 2025. Unauthorized access occurred between December 19-22, 2024, resulting in the exfiltration of client data including Social Security numbers and financial account numbers. Approximately 25 Nebraska residents were notified starting September 22, 2025. Graebel reported the incident to federal law enforcement and provided 24 months of credit monitoring via TransUnion.
- Montana State AGas victim2025-11-10
Graebel Companies, Inc. notified Montana residents of a cybersecurity incident occurring between December 19-22, 2024, where unauthorized parties accessed and took files from the network. The company reported the incident to federal law enforcement and is offering 24 months of credit monitoring through TransUnion.