HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
Brooks Cook and Associates, LLC
bd_1b541917d105bb19 · schema v1 · pii pii-v1
Full breach record for Brooks Cook and Associates, LLC →Brooks, Cook & Associates notified the New Hampshire Attorney General of a cybersecurity incident involving its data center provider. Unauthorized access occurred on December 6, 2025, exposing the names and Social Security numbers of two New Hampshire residents. Notifications were mailed on July 9, 2026, offering credit monitoring services.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_3c0bee5769df6e4dVermont State AGfiled 2026-07-09Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/brooks-cooks-associates-20260709.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 9, 2026
- Raw hash
- 18c66f38787902a7b897765d77e53c895626eac78bdbeace04f1cad40be974c1
Reporting entity
- Name
- Brooks Cook and Associates, LLCnorm: brooks cook and associates
- Domain
- bca-cpa.com
Victim entity
- Name
- Brooks Cook and Associates, LLCnorm: brooks cook and associates
- Domain
- bca-cpa.com
Incident
- Discovered
- Dec 6, 2025
- Materiality determined
- —
- Notification sent
- Jul 9, 2026
- Affected individuals
- 2
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified New Hampshire Attorney General's Office
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 31 weeks(215 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.