Confirmed breach. Intrusion Mar 18, 2024–Mar 26, 2024, discovered Mar 25, 2024 — the first regulatory filing landed 94 days later (flagged late). 2,184 individuals reported across the linked filings.
Sheet Metal Workers Local Union #83 Insurance Fund and Annuity Fund notified consumers of a phishing incident compromising an employee email account between March 18-26, 2024. The breach exposed names and financial account numbers. The organization changed passwords, reviewed policies, and offered 12 months of credit monitoring.
VT AG >45 bday
🗽NEW YORKHHS OCRlinked via same-victim cross-source · 100%
Sheet Metal Workers Local Union #83 Insurance Fund and Annuity Fund reported to HHS on 2024-07-03 a Hacking/IT Incident affecting 2,184 individuals. Breached information located on Email. An employee was compromised via an email phishing scheme, exposing PHI including names, SSNs, diagnoses, and financial data. The entity offered credit monitoring and implemented security safeguards.
Affected (this filing): 2,184
⛰️New Hampshire State AGMost recentlinked via same-victim cross-source · 100%
Sheet Metal Workers Local Union #83 Insurance Fund and Annuity Fund reported unauthorized access to an employee email account between March 18-26, 2024, following detection of unusual activity on March 25, 2024. The breach likely involved phishing and credential theft, exposing PII including names and addresses of approximately 7 New Hampshire residents. The organization notified the NH AG, changed passwords, and offered credit monitoring.
Affected (this filing): 7
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.