HackingStolen CredentialsCapture Stored DataData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICMediumContained
MBE CPAs
bd_0854a7d7c693b519 · schema v1 · pii pii-v1
Full breach record for MBE CPAs →MBE CPAs, LLP reports a supplemental data incident discovered on April 18, 2024, involving unauthorized access to employee and client data. One additional New Hampshire resident was identified. Impacted data includes SSNs, bank accounts, and health insurance info. MBE engaged forensic investigators, enhanced security controls (MFA, patching, monitoring), and offered credit monitoring.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_d5c9e4424e2ef559Maine State AGfiled 2025-06-09(3d gap)Verified
- bd_cda94f21ce7d38d5Montana State AGfiled 2025-05-13(24d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/wilson-elser-moskowitz-edelman-dicker-20250606.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 6, 2025
- Raw hash
- 88840f2ffe9a8e211e38b5f3dc4c49bf794f447f4f74fdf05f39dd0bce2afaff
Reporting entity
- Name
- MBE CPAsnorm: mbe cpas
Victim entity
- Name
- MBE CPAsnorm: mbe cpas
Incident
- Discovered
- Apr 18, 2024
- Materiality determined
- Jul 22, 2024
- Notification sent
- Jun 9, 2025
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney General Consumer Protection Bureau
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 14 months(414 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.