Confirmed breach. Intrusion Mar 15, 2021, discovered Mar 24, 2021 — the first regulatory filing landed 30 days later (flagged late). 21 individuals reported across the linked filings.
incident inc_5af6fca274ab4049 · merge_method human · confidence 100%
Litigation Timing
Notification delay
30days
Discovered → first regulatory filing
Discovery variance
0days
Range of discovered_at dates across filings
Filing span
Regulatory clocksMaine✗ ME AG >90d · 139dFull clock table in Litigation Timeline
State AGConfirmedLifecycle stage 2 of 3: ConfirmedUnverified claimConfirmedEnforcedakirahigh sensitivity
109days
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
Affected (total reported)
21
Data types
2
Financial account · Financial credentials
Jurisdictions
1
ME
Linked filings
2
all State AG
Sensitive data
financial_credentials
Timeline
Earliest sighting first · deep chronology in Litigation Timeline
Breach window
Mar 15, 2021
When the intrusion reportedly occurred, per the linked filings
Breach discovered
Mar 24, 2021
Reported by MAINE AG filings
30 days
🦞Maine State AGFirst filinglinked via shared-victim match · 100%
Lydall, Inc. experienced a ransomware attack on March 15, 2021, which was discovered on March 24, 2021. The breach affected 21 Maine residents, compromising their names and Social Security numbers. The company notified affected individuals on April 26, 2021, and offered one year of credit monitoring services through LifeLock.
Affected (this filing): 21
ME AG ≤30d · 30d
109 days
🦞Maine State AGMost recentlinked via shared-victim match · 100%
Lydall, Inc. reported a ransomware attack that occurred on March 15, 2021, and was discovered on March 24, 2021. The breach affected 21 Maine residents, and a total of 3100 individuals. The compromised information includes names or other personal identifiers in combination with financial account numbers or credit/debit card numbers with their security codes. Lydall offered one year of credit monitoring services through LifeLock to the affected individuals.
Affected (this filing):
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.