Clustered 6 filings across 6 jurisdictions · filing window May 13, 2021 → May 14, 2021. View entity profile → Other incidents for this victim →
incident inc_2fc6e89b72df4f93 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
Identity (basic) · Government ID · Financial account
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
CA DE ME MT OR SC
all State AG
Earliest sighting first · deep chronology in Litigation Timeline
Mar 1, 2021
When the intrusion reportedly occurred, per the linked filings
Mar 1, 2021
Reported by DELAWARE AG, SOUTH CAROLINA AG filings
Apr 1, 2021
Reported by MAINE AG filing
Apr 26, 2021
Reported by OREGON AG filing
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
Phillip Galyen, PC notified Delaware AG on May 14, 2021, of a March 2021 unauthorized network access. Malicious actors may have accessed client and employee data including names, SSNs, driver's licenses, financial account numbers, and medical/biometric records. Galyen hired forensic investigators, notified the FBI, and offered credit monitoring. No specific count of affected individuals was disclosed.
In March 2021, Phillip Galyen PC (a law firm) discovered unusual activity within its network. Investigation revealed a malicious actor may have accessed the network without authorization and may have acquired personal information of clients and employees, including names, dates of birth, driver's license numbers, SSNs, payment card data, biometric data, and medical information. The firm notified the FBI and offered credit monitoring to affected individuals.
Phillip Galyen PC reported an external system breach (hacking) occurring on 03/01/2021 and discovered on 04/01/2021. The incident compromised names and financial account/credit card numbers. The number of affected individuals is unknown. Substitute notice was sent on 05/14/2021, and identity theft protection services were offered.
Phillip Galyen, PC reported a potential data security incident in March 2021 where unauthorized access to its network may have exposed client and employee personal information, including names, SSNs, driver's licenses, financial data, and medical/biometric records. The firm engaged forensic investigators, notified the FBI, and is offering credit monitoring services. The investigation was ongoing as of the May 14, 2021 notification.
Phillip Galyen PC reported a data breach to the Oregon Attorney General. The breach was reported on 2021-05-14. The breach occurred during 3/1/2021 - 4/1/2021. The breach was discovered on 4/26/2021. 250 individuals were affected. Notice was sent on 5/14/2021.
Affected (this filing): 250
Phillip Galyen, PC reported a data breach to the Montana Attorney General. The breach was reported on 2021-05-14. The breach occurred from 3/1/2021 to 3/31/2021.