MalwareRansomwareData ExfiltratedRansom DemandedData EncryptedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTCREDENTIALSFINANCIAL_ACCOUNTEMPLOYMENTHEALTH_BASICMediumActive
MKS Instruments, Inc
bd_10609a6a1a76f030 · schema v1 · pii pii-v1
Full breach record for MKS Instruments, Inc →MKS Instruments, Inc. notified the NH AG of a ransomware event detected on Feb 13, 2023, affecting systems since Feb 3, 2023. The incident involved encryption of business/manufacturing systems and potential exfiltration of employee personal data (PII, SSN, credentials, financial info). 203 NH residents were notified on Feb 16, 2023. MKSI engaged forensic experts, reset passwords, deployed MFA, and installed Sentinel One. Identity monitoring offered for 2 years.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_7ab949b29245ba5aCalifornia State AGfiled 2023-02-15Candidate
- bd_40fb17ba9f50a304Maine State AGfiled 2023-02-16(1d gap)Candidate
- bd_488d1bfaf6139cd5Montana State AGfiled 2023-02-16(1d gap)Verified
- bd_91e20ee0c300cf70SEC 8-Kfiled 2023-02-13(2d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 9d gap
- bd_a88f0c343179b832SEC 8-Kfiled 2023-02-06(9d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/mks-instruments-20230215.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 15, 2023
- Raw hash
- 6f0452f215898538a516aa65b249e5cffcfe269989a4ec0470c36e189483d4b8
Reporting entity
- Name
- MKS Instruments, Incnorm: mks instruments
- Domain
- mksinst.com
Victim entity
- Name
- MKS Instruments, Incnorm: mks instruments
- Domain
- mksinst.com
Incident
- Discovered
- Feb 13, 2023
- Materiality determined
- —
- Notification sent
- Feb 16, 2023
- Affected individuals
- 203
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTCREDENTIALSFINANCIAL_ACCOUNTEMPLOYMENTHEALTH_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- reported the issue to U.S. law enforcement
Compliance
- Time to disclose
- 2 days(2 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.