Social EngineeringPhishingStolen CredentialsCustomer Data InvolvedMulti-Stage ChainPIIIDENTITY_BASICLowContained
Stark
bd_0e11cb8721839478 · schema v1 · pii pii-v1
Full breach record for Stark →Stark | Lattuca notified the New Hampshire Attorney General of a data security incident discovered on August 21, 2024, involving suspicious activity on an employee's email account. The incident affected one New Hampshire resident. The firm engaged cybersecurity specialists, reset passwords, and worked with law enforcement. Affected individuals received credit monitoring via Experian.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/stark-lattuca-20250303.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 3, 2025
- Raw hash
- b88c9e2e37ae400e50a0cd3ef29953564d7babcb4b44e2eca1df1fc21dd6d2fd
Reporting entity
- Name
- Starknorm: stark
- Domain
- stark.co.uk
Victim entity
- Name
- Starknorm: stark
- Domain
- stark.co.uk
Incident
- Discovered
- Aug 21, 2024
- Materiality determined
- Feb 28, 2025
- Notification sent
- Mar 3, 2025
- Affected individuals
- 1
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified Attorney General John M. Formella
- Initial access
- phishing_link
Compliance
- Time to disclose
- 28 weeks(194 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.