HackingStolen CredentialsCustomer Data InvolvedSupply Chain (3P Vendor)PIIIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
NCB Management Services, Inc.
bd_34294cfa92e78083 · schema v1 · pii pii-v1
Full breach record for NCB Management Services, Inc. →NCB Management Services, Inc., a third-party accounts receivable provider for Capital One, reported that an unauthorized third party accessed its systems on February 1, 2023, discovered on February 4, 2023. The incident affected 53 New Hampshire residents, exposing names and credit card account information. NCB engaged Kroll for credit monitoring and cooperated with law enforcement.
This filing is one of 18 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- bd_af43cc04b6170eccMontana State AGfiled 2023-05-26Verified
- bd_dc77d4029dd3d7c1Maine State AGfiled 2023-05-26Verified
- bd_7d3222e6f53876beMaine State AGfiled 2023-05-23(3d gap)Verified
- bd_153c9cd6421b0283Oregon State AGfiled 2023-05-22(4d gap)Verified
Show 6 more filings ↓Show fewer ↑up to 33d gap
- bd_46c7daa7a37aa471Montana State AGfiled 2023-05-22(4d gap)Verified
- bd_7e00d3aca7b39e63New Hampshire State AGfiled 2023-05-22(4d gap)Verified
- bd_84b3b575dbace3ecCalifornia State AGfiled 2023-05-22(4d gap)Verified
- bd_fb57761a0a687491Washington State AGfiled 2023-05-22(4d gap)Verified
- bd_a59e7f90661deffdDelaware State AGfiled 2023-06-16(21d gap)Verified
- bd_ebea091fe68ee688New Hampshire State AGfiled 2023-06-28(33d gap)Verified
Showing first 10 of 17 linked disclosures.
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/capital-one-20230526.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 26, 2023
- Raw hash
- a1a9fd739a5fac02cebca5f747b0f4559bf04c0b07e7d072b7ca7800016183b7
Reporting entity
- Name
- Capital Onenorm: capital one
- Domain
- capitalone.com
Victim entity
- Name
- NCB Management Services, Inc.norm: ncb management
Incident
- Discovered
- Feb 4, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 53
- Data types
- PIIIDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified and is cooperating with federal law enforcement authorities
- Third party
- via NCB Management Services, Inc.
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 16 weeks(111 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.