Social EngineeringPhishingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
CIBL, Inc.
bd_224d3313bee85885 · schema v1 · pii pii-v1
Full breach record for CIBL, Inc. →CIBL Inc. reported a phishing incident to the New Hampshire Attorney General on September 5, 2025. Unauthorized access to a corporate email account occurred between April 24 and May 5, 2025. The breach exposed the personal information of 4 New Hampshire residents, including names, SSNs, driver's license numbers, and financial account data. CIBL engaged forensic investigators, notified law enforcement, and provided credit monitoring services to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed4 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/cibl-20250908.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 8, 2025
- Raw hash
- f0ff23ede1f2f5bbefabac67c9d9c793c1d9609c21230241f3d451a0d9729953
Reporting entity
- Name
- CIBL, Inc.norm: cibl
- Domain
- ciblinc.com
Victim entity
- Name
- CIBL, Inc.norm: cibl
- Domain
- ciblinc.com
Incident
- Discovered
- May 6, 2025
- Materiality determined
- —
- Notification sent
- Sep 5, 2025
- Affected individuals
- 4
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- External
- Initial access
- phishing_link
Compliance
- Time to disclose
- 18 weeks(125 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.