Social EngineeringPhishingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Aldrich Services LLP
bd_39b6b57ebead2516 · schema v1 · pii pii-v1
Full breach record for Aldrich Services LLP →Aldrich Services LLP reported a phishing incident involving unauthorized access to a single employee email account between October 9 and 12, 2023. The breach affected one New Hampshire resident, whose identity information was potentially accessed. Aldrich Services notified federal law enforcement, changed the password, and provided credit monitoring via Kroll. Notification to the NH Attorney General was filed on April 1, 2024.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_9983f7b03d83eaeaMontana State AGfiled 2024-04-01Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/aldrich-services-20240401.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 1, 2024
- Raw hash
- 48b801a74f7903e7a5067ba937520dc781f3b96ba776511c3e353f339d380851
Reporting entity
- Name
- Aldrich Services LLPnorm: aldrich services
Victim entity
- Name
- Aldrich Services LLPnorm: aldrich services
Incident
- Discovered
- Oct 9, 2023
- Materiality determined
- —
- Notification sent
- Apr 1, 2024
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- External
- Regulator citations
- Notified federal law enforcementProviding written notice of this matter to relevant regulatory authorities
- Initial access
- phishing_link
Compliance
- Time to disclose
- 25 weeks(175 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.