Clustered 7 filings across 6 jurisdictions · filing window Jun 22, 2023 → Aug 10, 2023. View entity profile → Other incidents for this victim →
incident inc_8950172113634c85 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
CA ME MT NH OR WA
all State AG
per-filing reported counts
State AGs report only their own residents; bars show per-filing counts.
Earliest sighting first · deep chronology in Litigation Timeline
May 29, 2023 → May 30, 2023
When the intrusion reportedly occurred, per the linked filings
May 31, 2023
Reported by CALIFORNIA AG filing
Jun 7, 2023
Reported by WASHINGTON AG, OREGON AG, MAINE AG filings
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
Wilton Reassurance Company reported a data security breach to the California Attorney General. The incident occurred between May 29, 2023, and May 30, 2023. The filing provides only the organization name and breach dates; no details regarding the nature of the breach, data types affected, or number of individuals impacted are disclosed in this record.
Wilton Reassurance Company reported a data breach to the Oregon Attorney General. The breach was reported on 2023-06-23. The breach occurred during 5/29/2023 - 5/30/2023. The breach was discovered on 6/7/2023. 1,482,490 individuals were affected. Notice was sent on 6/23/2023.
Affected (this filing): 1,482,490
Wilton Reassurance Company, a business sector entity reported a unauthorized access incident to the Washington Attorney General. The organization became aware of the incident on 2023-06-07 and filed notice on 2023-06-23. 8,148 Washington residents were affected. 16 days elapsed between awareness and notification. 9 days to identify the breach. 0 days to contain the breach.
Affected (this filing): 8,148
Wilton Reassurance Company reported a data breach to the Montana Attorney General. The breach was reported on 2023-08-02. The breach occurred on 6/7/2023. 2,441 Montana residents were affected.
Affected (this filing): 2,441
Wilton Reassurance Company notified the California AG of a data breach affecting its customers. An unauthorized third party exploited a vulnerability in Progress Software's MOVEit Transfer software, accessing PBI's servers on May 29-30, 2023, and downloading data. PBI discovered the vulnerability on May 31, 2023. Affected data includes identity information. PBI patched servers, investigated, and offered 12 months of credit monitoring via Kroll.
Wilton Reassurance Company reported a data breach affecting 2,232 Maine residents, stemming from a vulnerability in the MOVEit Transfer tool used by its third-party service provider, PBI Research Services. The breach, which occurred in May 2023, resulted in the compromise of names and Social Security numbers.
Affected (this filing): 2,232
Wilton Reassurance Company reported a cybersecurity event involving its third-party vendor, PBI Research Services. A cybercriminal group known as CL0P exploited a zero-day vulnerability in MOVEit Transfer software between May 29-30, 2023, to exfiltrate consumer personal information. The incident affected 2,013 New Hampshire residents, whose data included names, addresses, and Social Security numbers. PBI notified affected individuals and offered credit monitoring services. The incident is considered resolved.
Affected (this filing): 2,013