MalwareRansomwareData EncryptedRansom DemandedCustomer Data InvolvedTargetedPIIIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSCREDENTIALSMediumContained
VelocitySBA, LLC
bd_127b22dc55a4c8fb · schema v1 · pii pii-v1
Full breach record for VelocitySBA, LLC →VelocitySBA, LLC reported a ransomware attack on April 1, 2023, which encrypted systems for 24 hours. The incident affected customer personal information including government IDs, tax documents, and financial data. Three New Hampshire residents were potentially affected. VelocitySBA secured systems, engaged experts, notified the FBI and SBA, and offered credit monitoring.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_1a94efe50751cc61Montana State AGfiled 2023-09-11(3d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/velocitysba-20230908.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 8, 2023
- Raw hash
- 66e0735c2f5cf141f31e0fe612ce41a10fb227f4dcd11b2eca87aa1cedd30c7f
Reporting entity
- Name
- VelocitySBA, LLCnorm: velocitysba
Victim entity
- Name
- VelocitySBA, LLCnorm: velocitysba
Incident
- Discovered
- Apr 2, 2023
- Materiality determined
- —
- Notification sent
- Sep 11, 2023
- Affected individuals
- 3
- Data types
- PIIIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSCREDENTIALS
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified the U.S. Small Business AdministrationNotified the Federal Bureau of Investigation
Compliance
- Time to disclose
- 23 weeks(159 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.