Osaic Institutions, Inc.
bd_21865c254c699448 · schema v1 · pii pii-v1
Full breach record for Osaic Institutions, Inc. →Osaic Institutions, Inc. notified the New Hampshire Attorney General of a cybersecurity event involving unauthorized access to an advisor's email account. An unauthorized party accessed the account for six minutes on October 1, 2025, after the advisor received a phishing message. The investigation determined that one New Hampshire resident's name and Social Security number were accessed. Osaic mailed a notification letter on November 6, 2025, and offered two years of credit monitoring services.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 1, 2025
Begins
Oct 20, 2025
Discovered
Nov 6, 2025
Filed
vs. sector median
7 wks faster
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.