Confirmed breach. Intrusion Jan 1, 1–May 17, 2020, discovered Sep 9, 2021 — the first regulatory filing landed 21 days later. 4,421,756 individuals reported across the linked filings.
The Neiman Marcus Group, LLC (“NMG” or the “Company”) reported a data breach to the Oregon Attorney General. The breach was reported on 2021-09-30. The breach occurred during 1/1/0001 - 5/17/2020. The breach was discovered on 9/9/2021. 4,354,346 individuals were affected. Notice was sent on 9/30/2021.
Affected (this filing): 4,354,346
OR AG ≤45d
🌲Washington State AGMost recentlinked via multistate filing link · 100%
The Neiman Marcus Group, LLC (“NMG” or the “Company”), a business sector entity reported a unauthorized access incident to the Washington Attorney General. The organization became aware of the incident on 2021-09-09 and filed notice on 2021-09-30. 67,410 Washington residents were affected. 21 days elapsed between awareness and notification. 495 days to identify the breach. 0 days to contain the breach.
Affected (this filing): 67,410
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.