D'Amico & Pettinicchi, LLC

D'Amico & Pettinicchi, LLC

The law firm D'Amico & Pettinicchi LLC suffered a data breach caused by external hacking on March 21, 2024, compromising the personal information of 1,899 individuals. The breach was detected nearly six weeks later on May 1, 2024, and affected individuals were formally notified on June 14, 2024. As a remedial measure, the firm offered 24 months of credit monitoring and identity theft protection services to mitigate potential risks such as fraud or unauthorized use of exposed data. The incident highlights vulnerabilities in the firm’s cybersecurity defenses, allowing external actors to infiltrate systems and exfiltrate sensitive client or employee data. While the exact nature of the stolen information (e.g., financial records, Social Security numbers, or legal documents) was not explicitly detailed, the provision of long-term credit monitoring suggests the exposure of personally identifiable information (PII) with high potential for misuse. The delayed discovery further exacerbates concerns about the firm’s incident response capabilities, as prolonged undetected access could have enabled deeper exploitation. The breach underscores the growing targeting of law firms—often repositories of highly sensitive client data—by cybercriminals seeking valuable information for identity theft, blackmail, or secondary attacks. The firm’s proactive notification and protective measures aim to restore trust, but the incident serves as a cautionary example of the reputational and financial risks associated with third-party data breaches in the legal sector.

Source: https://www.maine.gov/agviewer/content/ag/985235c7-cb95-4be2-8792-a1252b4f8318/38810c69-e443-4d48-81a4-4bf63d57f6f4.html

TPRM report: https://www.rankiteo.com/company/d'amico-&-pettinicchi

"id": "d'a041091825",
"linkid": "d'amico-&-pettinicchi",
"type": "Breach",
"date": "3/2024",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 1899,
                        'industry': 'Legal Services',
                        'name': "D'Amico & Pettinicchi LLC",
                        'type': 'Law Firm'}],
 'attack_vector': 'External Hacking',
 'customer_advisories': 'Identity theft protection services offered (24 months '
                        'of credit monitoring)',
 'data_breach': {'number_of_records_exposed': 1899,
                 'personally_identifiable_information': True},
 'date_detected': '2024-05-01',
 'date_publicly_disclosed': '2024-06-14',
 'description': 'The Maine Office of the Attorney General reported that '
                "D'Amico & Pettinicchi LLC experienced a data breach due to "
                'external hacking, affecting 1,899 individuals. Identity theft '
                'protection services, including 24 months of credit '
                'monitoring, were offered to affected consumers.',
 'impact': {'data_compromised': True, 'identity_theft_risk': True},
 'references': [{'source': 'Maine Office of the Attorney General'}],
 'regulatory_compliance': {'regulatory_notifications': 'Maine Office of the '
                                                       'Attorney General'},
 'response': {'communication_strategy': 'Consumer notifications with identity '
                                        'theft protection services (24 months '
                                        'of credit monitoring)',
              'law_enforcement_notified': True},
 'title': "Data Breach at D'Amico & Pettinicchi LLC",
 'type': 'Data Breach'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.