HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICLowContained
Donelan's Supermarkets, Inc.
bd_2d1ce5b3eb4d1f9b · schema v1 · pii pii-v1
Full breach record for Donelan's Supermarkets, Inc. →Donelan’s Supermarkets, Inc. notified the New Hampshire Attorney General of a network security incident detected on August 14, 2025. An unauthorized third party accessed the network and acquired personal information (names) of 19 New Hampshire residents. The company engaged forensic specialists, notified the FBI, rebuilt affected systems, and offered 12 months of credit monitoring via Kroll. No evidence of misuse was found.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_a584fb44ccf03ddfMaine State AGfiled 2025-11-17Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/donelans-supermarkets-20251117.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 17, 2025
- Raw hash
- 5b3e1a0b344bfc62d34e11810b516c9bb00418dd672279f0a4aaef5e5602b1ef
Reporting entity
- Name
- Donelan's Supermarkets, Inc.norm: donelan s supermarkets
Victim entity
- Name
- Donelan's Supermarkets, Inc.norm: donelan s supermarkets
Incident
- Discovered
- Aug 14, 2025
- Materiality determined
- —
- Notification sent
- Nov 17, 2025
- Affected individuals
- 19
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- Notified the FBI and is fully cooperating with their investigation
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 14 weeks(95 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.