Clustered 6 filings across 6 jurisdictions · filed Apr 10, 2026. View entity profile → Other incidents for this victim →
incident inc_77251d81ac174427 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
CA IN ME NH OR VT
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
all State AG
per-filing reported counts
State AGs report only their own residents; bars show per-filing counts.
Earliest sighting first · deep chronology in Litigation Timeline
Feb 26, 2026 → Feb 27, 2026
When the intrusion reportedly occurred, per the linked filings
Feb 26, 2026
Reported by NEW HAMPSHIRE AG filing
Mar 23, 2026
Reported by OREGON AG, MAINE AG filings
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
David Evans Enterprises, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2026-04-10. The breach occurred during 2/26/2026 - 2/27/2026. The breach was discovered on 3/23/2026. 8,915 individuals were affected. Notice was sent on 4/10/2026.
Affected (this filing): 8,915
David Evans Enterprises, Inc. reported an external system breach (hacking) discovered March 23, 2026, affecting 4 Maine residents. The incident occurred February 26-27, 2026. Consumer notification was sent on April 10, 2026, with 12 months of credit monitoring provided by TransUnion.
Affected (this filing): 4
California OAG SB24 sample-notice posting for David Evans Enterprises, Inc. (DEEI). The portal lists breach dates of February 26–27, 2026. The attached notice letter (Exhibit A) describes the offered remediation (12 months of Cyberscout single-bureau credit monitoring) and standard consumer-rights boilerplate (fraud alerts, credit freezes, FTC/state-AG contacts). It also states 'There is 1 Rhode Island resident impacted by this incident.' The provided text does not include the body of the notice describing the nature of the incident, attack vector, threat actor, total number of affected individuals, or specific data elements compromised, so those fields are left null/unknown.
David Evans Enterprises, Inc. (DEEI) notified the New Hampshire Attorney General on April 10, 2026, of a cybersecurity incident detected on February 26, 2026. Unauthorized access occurred between Feb 26-27, 2026, affecting 3 New Hampshire residents. Data exposed included names, Social Security numbers, and/or driver's license numbers. DEEI engaged forensic specialists, notified law enforcement, and offered 12 months of credit monitoring. The incident is currently contained.
Affected (this filing): 3
David Evans Enterprises Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2026-02-26 and was reported on 2026-04-10. 19 Indiana residents were affected. 8,915 individuals affected in total.
Affected (this filing): 8,915
David Evans Enterprises, Inc. filed a data breach notice with the Vermont Attorney General on April 10, 2026. The notice identifies one impacted resident in Rhode Island. The company is offering 12 months of credit monitoring and fraud assistance via Cyberscout/TransUnion. Specifics of the breach mechanism and data types are not detailed in the provided attachment text.
Affected (this filing): 1