Clustered 6 filings across 6 jurisdictions · filed Mar 9, 2026. View entity profile → Other incidents for this victim →
incident inc_7341d5353281415b · merge_method human · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
PII · Identity (basic) · Government ID
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
CA IN ME NH TX VT
all State AG
per-filing reported counts
State AGs report only their own residents; bars show per-filing counts.
Earliest sighting first · deep chronology in Litigation Timeline
Apr 17, 2025 → Apr 22, 2025
When the intrusion reportedly occurred, per the linked filings
Apr 28, 2025
Reported by CALIFORNIA AG, NEW HAMPSHIRE AG, VERMONT AG filings
Feb 23, 2026
Reported by MAINE AG, TEXAS AG filings
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
Ericsson Inc. reported a data security incident originating at one of its service providers. A vishing attack on a single individual at the service provider on or around April 28, 2025 led to unauthorized access to files between April 17–22, 2025. Potentially compromised data included names and Social Security numbers. The review was completed February 23, 2026; 21 Maine residents were notified March 9, 2026. IDX credit monitoring offered for 12 months.
Affected (this filing): 21
Ericsson Inc notified the California AG of a data security incident at a third-party service provider. Unauthorized access to certain data occurred between April 17 and April 22, 2025. The provider detected the suspicious event on April 28, 2025. A review completed on February 23, 2026, determined that some personal information (name and other data elements) was contained in the affected files. Ericsson is offering identity protection services to affected individuals.
Ericsson Inc. notified the New Hampshire Attorney General of a data security incident involving a third-party service provider. The provider experienced a vishing attack on April 28, 2025, leading to unauthorized access to limited data between April 17 and April 22, 2025. Approximately 97 New Hampshire residents were affected, with potential exposure of names and Social Security numbers. Ericsson engaged cybersecurity experts, reset passwords, notified the FBI, and provided 12 months of credit monitoring to affected individuals.
Affected (this filing): 97
Ericsson Inc based in Plano, Texas, a business – retail or merchant entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-02-23 and reported on 2026-03-09. 4,377 Texas residents were affected. 15,661 individuals affected in total. Types of information involved: Name of individual;Address;Social Security Number Information;Driver’s License number;Government-issued ID number (e.g. passport, state ID card);Financial Information (e.g. account number, credit or debit card number);Medical Information;Date of Birth. Consumers were notified via U.S. Mail.
Affected (this filing): 4,377
Ericsson Inc notified Vermont AG that a third-party service provider experienced unauthorized access to files containing personal information (names, and potentially other data elements) between April 17-22, 2025. The incident was discovered on April 28, 2025. Ericsson offered complimentary identity protection services to affected individuals.
Ericsson Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2025-04-17 and was reported on 2026-03-09. 80 Indiana residents were affected. 15,661 individuals affected in total.
Affected (this filing): 15,661