MalwareRansomwareData ExfiltratedData EncryptedCustomer Data InvolvedEmployee Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICMediumContained
usmortgage.com
bd_0a61e92f3635d46e · schema v1 · pii pii-v1
Full breach record for usmortgage.com →US Mortgage Corporation reported a ransomware incident affecting 4 New Hampshire residents. Unauthorized access occurred May 13-14, 2025, detected May 14, 2025. Impacted data included names, contact info, government IDs (SSN, driver's license), financial account info, and limited medical/insurance info. Notices mailed March 5, 2026. Response included forensic investigation, law enforcement notification, system rebuilding, password resets, and credit monitoring offers.
Leak gap clock✗ Leak >180d42 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed4 affectedView incident
A leak claim by safepay about this victim predates this filing by 280 days.View originating leak claim
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/us-mortgage-20260306.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 6, 2026
- Raw hash
- 9e69721560feb7ce8bff7812c7f01a37108706ec6195d6e72f7f1cfee9f6f3e3
Reporting entity
- Name
- usmortgage.comnorm: usmortgagecom
- Domain
- usmortgage.com
Victim entity
- Name
- usmortgage.comnorm: usmortgagecom
- Domain
- usmortgage.com
Incident
- Discovered
- May 14, 2025
- Materiality determined
- —
- Notification sent
- Mar 5, 2026
- Affected individuals
- 4
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Office of the Attorney General
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 42 weeks(296 days from discovery to filing)
- Compliance flags
- Leak >180d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.