Social EngineeringPhishingCustomer Data InvolvedTargetedPIIIDENTITY_GOVERNMENTEMPLOYMENTMediumContained
Syndeo, LLC
bd_2f4b92b79096934c · schema v1 · pii pii-v1
Full breach record for Syndeo, LLC →Syndeo, LLC d/b/a Broadvoice notified New Hampshire AG of a phishing incident on Sept 11, 2025, where an employee inadvertently transmitted 2024 W-2s for 164 employees to an unauthorized third party. Two New Hampshire residents were affected. Data included names, addresses, SSNs, and wage info. No systems were compromised. Broadvoice blocked the email, engaged forensic specialists, notified the IRS, and provided 36 months of credit monitoring.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_39e8b48e0d60f6afIndiana State AGfiled 2025-09-22(22d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/syndeo-broadvoice-20251014.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 14, 2025
- Raw hash
- c3ce923a56cf051ad0274628a77ba1ff657c29ec86a784f53e442cdb264a9fb4
Reporting entity
- Name
- Syndeo, LLCnorm: syndeo
- Domain
- broadvoice.com
Victim entity
- Name
- Syndeo, LLCnorm: syndeo
- Domain
- broadvoice.com
Incident
- Discovered
- Sep 11, 2025
- Materiality determined
- —
- Notification sent
- Sep 22, 2025
- Affected individuals
- 2
- Data types
- PIIIDENTITY_GOVERNMENTEMPLOYMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified Internal Revenue Service (IRS)
- Initial access
- phishing_link
Compliance
- Time to disclose
- 5 weeks(33 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.