MalwareRansomwareData EncryptedTargetedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTEMPLOYMENTMediumContained
Form Energy
bd_06e38dc0ce98a381 · schema v1 · pii pii-v1
Full breach record for Form Energy →Form Energy, Inc. notified the New Hampshire Attorney General of a ransomware attack discovered on September 16, 2025. The incident impacted 23 New Hampshire residents (employees and beneficiaries), exposing PII including names, addresses, SSNs, and bank account numbers. Form Energy took systems offline, engaged forensic experts, and provided credit monitoring services.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_f409baa0ef1fccd7California State AGfiled 2025-10-28Candidate
- bd_1919c4dafc469d10California State AGfiled 2025-11-14(17d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/form-energy-20251028.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 28, 2025
- Raw hash
- 06e170744c085570c9eb484cd9891e70e4950e53964d913bf0400ff7e2bfc3d4
Reporting entity
- Name
- DUANE MORRIS LLPnorm: duane morris
Victim entity
- Name
- Form Energynorm: form energy
- Domain
- formenergy.com
Incident
- Discovered
- Sep 16, 2025
- Materiality determined
- —
- Notification sent
- Oct 22, 2025
- Affected individuals
- 23
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTEMPLOYMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Office of Attorney General
Compliance
- Time to disclose
- 6 weeks(42 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.