HackingTargetedIDENTITY_BASICLowContained
General Services Corporation
bd_39908198543f4af2 · schema v1 · pii pii-v1
Full breach record for General Services Corporation →General Services Corporation (GSC) reported a cyber attack on April 10, 2023, affecting approximately 6 New Hampshire residents. GSC engaged third-party specialists, notified law enforcement, and rotated credentials. Notifications were sent starting July 6, 2023, offering credit monitoring. The attack involved unauthorized access to network data, potentially including personal identification information.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_904ca574e49958ceMaine State AGfiled 2023-09-28Verified
- bd_f2e42433c6d542e6Vermont State AGfiled 2023-08-17(42d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/icafs-dba-general-services-corporation-20230928.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 28, 2023
- Raw hash
- b420c65c1fa4bbc81a39193eca0a5ccd02562e8c6c9923b84d77daa1b848e091
Reporting entity
- Name
- ICAFS, Inc.norm: icafs
Victim entity
- Name
- General Services Corporationnorm: general services
Incident
- Discovered
- Apr 10, 2023
- Materiality determined
- —
- Notification sent
- Jul 6, 2023
- Affected individuals
- 6
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- Notified law enforcement
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 24 weeks(171 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.