HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICMediumContained
Rodenburg Law Firm
bd_024bc57dbb83a987 · schema v1 · pii pii-v1
Full breach record for Rodenburg Law Firm →Rodenburg Law Firm notified the New Hampshire Attorney General of a data security incident discovered on August 26, 2025. An unknown third party gained unauthorized access to the firm's network, exposing New Hampshire residents' names, Social Security numbers, payment card information, and medical treatment data. The firm engaged cybersecurity experts, notified law enforcement, and provided 17 affected residents with 12-24 months of credit monitoring via TransUnion. Notification letters were sent starting April 21, 2026.
Leak gap clock⏱ Leak >90d35 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 2 about the same incident.View merged incident
A leak claim by akira about this victim predates this filing by 142 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_2cb09808286009aaCalifornia State AGfiled 2026-07-02(63d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/rodenburg-law-firm-20260430.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 30, 2026
- Raw hash
- f46af7121228b682c1bcb77e86b123f215c4701f9e9df51529350561da9730b2
Reporting entity
- Name
- Rodenburg Law Firmnorm: rodenburg law firm
- Domain
- rodenburgllp.com
Victim entity
- Name
- Rodenburg Law Firmnorm: rodenburg law firm
- Domain
- rodenburgllp.com
Incident
- Discovered
- Aug 26, 2025
- Materiality determined
- —
- Notification sent
- Apr 21, 2026
- Affected individuals
- 17
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1119 Automated Collection
- Threat actor
- External
- Regulator citations
- Notified New Hampshire Attorney General's Consumer Protection Bureau
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 35 weeks(247 days from discovery to filing)
- Compliance flags
- Leak >90d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.