HackingCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
The Esco Group
bd_2cdf38ac49c20574 · schema v1 · pii pii-v1
Full breach record for The Esco Group →The ESCO Group, an electrical installation services provider, notified the New Hampshire Attorney General on July 9, 2021, of a cybersecurity incident occurring on November 27, 2020. An unauthorized third party gained access to ESCO systems containing employee PII, including names, SSNs, and dates of birth. One New Hampshire resident was affected. ESCO engaged forensic specialists, reset passwords, enhanced security controls (MFA, EDR), and offered credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/esco-group-20210709.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 9, 2021
- Raw hash
- 9860d5b51358130fd90395f97ab87abcf494a3b06449ec51d7d6fea0053b2cef
Reporting entity
- Name
- The Esco Groupnorm: the esco
- Domain
- theescogroup.net
Victim entity
- Name
- The Esco Groupnorm: the esco
- Domain
- theescogroup.net
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jul 9, 2021
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.