HackingVulnerability ExploitCustomer Data InvolvedPIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Inca Floats
bd_05de7c13f9f2aa24 · schema v1 · pii pii-v1
Full breach record for Inca Floats →Inca Floats, Inc. (dba International Nature & Cultural Adventures) reported a data security incident detected on November 24, 2024, where an unauthorized third party attempted to infiltrate its network. The company patched the server, deactivated access, engaged forensic investigators, and offered credit monitoring to affected individuals, including New Hampshire residents.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_9fef5edf8df5518aMaine State AGfiled 2025-01-21Candidate
- bd_b2251ef4755d1f85Montana State AGfiled 2025-01-21Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/inca-floats-international-nature-cultural-adventures-integrity-galapagos-20250121.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 21, 2025
- Raw hash
- 632c04c3da7699759f6673259ba9a8c85d5dd45b9400014979eeda0654461a56
Reporting entity
- Name
- Inca Floatsnorm: inca floats
Victim entity
- Name
- Inca Floatsnorm: inca floats
Incident
- Discovered
- Nov 24, 2024
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney General Consumer Protection Bureau
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 8 weeks(58 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.