Form I-9 Compliance
bd_18442bbc433502a5 · schema v1 · pii pii-v1
Full breach record for Form I-9 Compliance →4 incidents on fileForm I-9 Compliance notified the NH AG of a cybersecurity incident affecting approximately 13 NH residents. Unauthorized access occurred on Feb 5, 2024, via compromised credentials from a third-party IT provider. Discovered April 12, 2024. Data included basic PII. Remediation included disabling legacy app, rebuilding on Azure, and implementing MFA.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 5, 2024
Begins
Apr 12, 2024
Discovered
Jun 10, 2024
Filed
vs. sector median
10 wks faster
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Maine State AGbd_401ba42cacddd1482024-05-31 · +10dVerified
- Massachusetts State AGbd_8f1b1107ccf28e192024-05-31 · +10dVerified
- California State AGbd_8f688b221999a8af2024-05-31 · +10dCandidate
- Indiana State AGbd_d920f5f5481dc1cd2024-05-31 · +10dVerified
Show 1 more filing ↓Show fewer ↑up to 10d gap
- Montana State AGbd_e493ce065e457e962024-05-31 · +10dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing May 31 (ME), last Jun 10 (NH) — a 10-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.