Clustered 7 filings across 7 jurisdictions · filing window Jun 1, 2026 → Jun 9, 2026. View entity profile → Other incidents for this victim →
incident inc_dd3e292fd7e545f9 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
Identity (basic) · Government ID
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
IN MA ME NH SC TX VT
all State AG
per-filing reported counts
State AGs report only their own residents; bars show per-filing counts.
Earliest sighting first · deep chronology in Litigation Timeline
Jan 27, 2026
When the intrusion reportedly occurred, per the linked filings
Jan 28, 2026
Reported by NEW HAMPSHIRE AG, SOUTH CAROLINA AG filings
May 28, 2026
Reported by MAINE AG, TEXAS AG filings
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
Delaware North notified Massachusetts residents of a cybersecurity incident involving the unauthorized access of personal information, specifically names and driver’s license or state-issued identification numbers. The company engaged Kroll to provide complimentary credit and identity monitoring services to affected individuals.
Delaware North reported a data breach to the Vermont Attorney General. The breach was reported to the AGO on 2026-06-05. The reporting organization type is Hospitality. 91 Vermont residents were affected. Categories of data breached: Government ID Numbers.
Delaware North reported an external system breach (hacking) occurring on January 27, 2026, discovered on May 28, 2026. The incident affected 132 Maine residents. The company provided written notification on June 5, 2026, and offered one year of credit monitoring and identity theft protection services through Kroll.
Affected (this filing): 132
Delaware North notified the New Hampshire Attorney General of a breach affecting 1,131 NH residents. On January 27, 2026, an unauthorized actor accessed an employee's Microsoft account and copied files containing names and driver's license/ID numbers. Delaware North secured the account, conducted an investigation, and mailed notifications on June 5, 2026, offering one year of credit monitoring.
Affected (this filing): 1,133
Delaware North reported a data breach to the Indiana Attorney General. The breach occurred on 2026-01-27 and was reported on 2026-06-05. 268 Indiana residents were affected.
Affected (this filing): 268
Delaware North notified South Carolina residents of a cybersecurity incident detected on January 28, 2026, involving unauthorized access to an employee's Microsoft account. The actor copied files containing names and driver's license or state ID numbers. Delaware North secured the account, engaged Kroll for credit monitoring services, and issued notices to affected individuals across multiple states.
Delaware North based in Buffalo, New York, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-05-28 and reported on 2026-06-09. 976 Texas residents were affected. 66,352 individuals affected in total. Types of information involved: Name of individual;Social Security Number Information;Driver’s License number. Consumers were notified via U.S. Mail.
Affected (this filing): 976