Berkeley Research Group Data Breach: What the Notification Letter Says

Berkeley Research Group, LLC (BRG), a global consulting firm that provides advisory and expert witness services to clients and law firms, has notified individuals of a data incident that occurred on its own network. BRG says it detected suspicious activity on Sunday, March 2, 2025, and its investigation, aided by outside cybersecurity professionals, determined that an unauthorized actor had access to BRG’s systems from the evening of Friday, February 28, 2025, until that Sunday. During that window, the intruder was able to copy some individuals’ personal information. This falls under hacking or system intrusion, and BRG says it has since contained the incident, rotated credentials, rebuilt affected systems, and is cooperating with federal law enforcement.

BRG holds this information because it was shared with the firm in connection with client engagements, meaning affected individuals may not have a direct relationship with BRG themselves — their data may have come through a law firm or company that hired BRG for consulting or expert witness work. The version of the letter we reviewed did not include an aggregate number of people affected, and it referenced a data elements section that was left blank in the copy provided, so we cannot confirm the exact figure or list here.

What information was exposed?
  • The specific categories of personal information involved were not spelled out in the copy of the letter we reviewed — it pointed to a data elements section that wasn’t filled in.
  • BRG is offering 24 months of free credit monitoring through Kroll, which typically signals that sensitive identifiers such as Social Security numbers or financial account details may have been involved, though this is not explicitly confirmed in the text provided.
  • If you received this letter, check your specific copy for a list of exactly what information of yours was affected.

BRG is offering 24 months of free identity monitoring through Kroll, which includes credit monitoring, fraud consultation, and identity theft restoration services. You can enroll at https://enroll.krollmonitoring.com using the membership number listed on your individual letter; the letter references an activation deadline, but the specific date was not filled in on the copy we reviewed, so check your own letter for that detail.

What should you do now?
  • Enroll in the free Kroll identity monitoring BRG is offering as soon as possible, using the membership number in your letter, and note the activation deadline printed on your copy.
  • Because the exact data types weren’t detailed here, treat this as a precaution for identity theft risk: consider signing up for a service like Aura or LifeLock, which can alert you if your information appears elsewhere.
  • Place a fraud alert with one of the three nationwide credit bureaus (Equifax, Experian, or TransUnion) — doing so with one automatically notifies the other two.
  • Consider a credit freeze with all three bureaus, which is free and prevents new credit from being opened in your name without your explicit consent.
  • Request your free annual credit reports at annualcreditreport.com and review them for accounts or inquiries you don’t recognize.
  • Watch your existing financial accounts and any correspondence from unfamiliar creditors, and report anything suspicious to your bank or card issuer right away.
  • Keep the notification letter and any Kroll enrollment confirmation in case you need to reference them later.

If you have questions, Berkeley Research Group can be reached at (866) 291-2114, Monday through Friday from 9am to 6:30pm Eastern Time.

Leave a Comment