HackingStolen CredentialsEmail MisuseMulti-Stage ChainCustomer Data InvolvedEmployee Data InvolvedBusiness Associate (HIPAA)IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICMediumContained
New Era Motors
bd_2a0d358eda680c12 · schema v1 · pii pii-v1
Full breach record for New Era Motors →Supplemental notification from New Era Enterprises regarding a cybersecurity event affecting policyholders of Central States Health & Life Co. of Omaha and Provident American Insurance Company. The incident involved unauthorized access via stolen credentials, compromising identity and health data. Affected individuals in multiple states, including NH, were offered credit monitoring.
This filing is one of 9 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- bd_198f0723ea5ddc06Vermont State AGfiled 2025-03-14Verified
- bd_41d6c2506467d9f6Maine State AGfiled 2025-03-14Candidate
- bd_8b6b5a104a8287b7Montana State AGfiled 2025-03-14Verified
- bd_5f96a2b2e9134da6New Hampshire State AGfiled 2025-02-11(31d gap)Verified
Show 4 more filings ↓Show fewer ↑up to 31d gap
- bd_6098503dcee06069Maryland State AGfiled 2025-02-11(31d gap)Verified
- bd_a3beb38fc5fcc96eIndiana State AGfiled 2025-02-11(31d gap)Verified
- bd_d197ed8e5f33c5caMaine State AGfiled 2025-02-11(31d gap)Candidate
- bd_e805dbd864a19198Washington State AGfiled 2025-02-11(31d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/new-era-20250314.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 14, 2025
- Raw hash
- 99e1cff9053eb4c56759a4861fe5a7b90cab3db9ab7843cfc7a8697dd8eca47c
Reporting entity
- Name
- New Era Motorsnorm: new era motors
- Domain
- neweracars.com
Victim entity
- Name
- New Era Motorsnorm: new era motors
- Domain
- neweracars.com
Incident
- Discovered
- Feb 3, 2025
- Materiality determined
- —
- Notification sent
- Mar 14, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASIC
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Supplemental notification submitted to New Hampshire Attorney General
- Third party
- via Central States Health & Life Co. of Omaha
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 6 weeks(39 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.