Social EngineeringPhishingCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
CG Financial Services
bd_2d13ca865a0d11dd · schema v1 · pii pii-v1
Full breach record for CG Financial Services →CG Black Financial Services Inc notified the New Hampshire Attorney General of a security incident involving unauthorized access to two employee email accounts starting March 21, 2025. The breach potentially exposed the names and Social Security numbers of six New Hampshire residents. The company secured the accounts, conducted an investigation, and mailed notification letters offering one year of complimentary credit monitoring and identity theft protection services.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_8417193509bcda75Vermont State AGfiled 2026-06-24Verified
- bd_c8e532d50f0c3b14Indiana State AGfiled 2026-06-24Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/cg-black-financial-services-20260624.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 24, 2026
- Raw hash
- 294b486f928dfc44a4763e801f945f53de3b075ebc4d231389fd4ab56ff38b83
Reporting entity
- Name
- CG Financial Servicesnorm: cg financial
- Domain
- mycgfinancial.com
Victim entity
- Name
- CG Financial Servicesnorm: cg financial
- Domain
- mycgfinancial.com
Incident
- Discovered
- Mar 21, 2025
- Materiality determined
- —
- Notification sent
- Jun 24, 2026
- Affected individuals
- 6
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- phishing_link
Compliance
- Time to disclose
- 15 months(460 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.