HackingStolen CredentialsCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
Goldsmith Molis & Gray, PLLC
bd_1217ed2b3d70b288 · schema v1 · pii pii-v1
Full breach record for Goldsmith Molis & Gray, PLLC →Goldsmith Molis & Gray, PLLC (GMG) notified the New Hampshire Attorney General of a data security incident on April 20, 2022. On January 26, 2022, GMG identified unauthorized access to an external file-sharing platform via an employee's account. The incident affected one New Hampshire resident, potentially exposing name and Social Security number. GMG reset passwords, engaged a third-party e-discovery vendor, and sent notification letters offering identity monitoring services.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/goldsmith-mollis-gray-20220420.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 20, 2022
- Raw hash
- 85cfefbed3f792f2f7380643c03ce1a5f8d2bdd5d916d9aef60432d2281db1c9
Reporting entity
- Name
- Lewis Brisbois Bisgaard & Smith, PLLCnorm: lewis brisbois bisgaard smith
Victim entity
- Name
- Goldsmith Molis & Gray, PLLCnorm: goldsmith molis gray
Incident
- Discovered
- Jan 26, 2022
- Materiality determined
- —
- Notification sent
- Apr 18, 2022
- Affected individuals
- 1
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified New Hampshire Attorney General
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 12 weeks(84 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.