DisclosureLens
Social EngineeringManufacturingManufacturingPhishingCustomer Data InvolvedGovernment IDIdentity (basic)MediumContained

The Corsi Group, Inc.

bd_3cb8f3d7be29faf7 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Nov 16, 2020

Filed

Jan 21, 2021

To disclose

9 weeks

Affected

4state residents only

Linked

3 filings

Confidence

66%
Full breach record for The Corsi Group, Inc.

The Corsi Group, Inc., a cabinet manufacturer, notified the New Hampshire Attorney General of a security incident involving unauthorized access to an employee's email account. The unauthorized access occurred between November 6 and November 19, 2020. The investigation confirmed that personal information, including names and Social Security numbers, of four New Hampshire residents was stored in the compromised account. The company provided written notice to affected residents on January 20, 2021, and offered one year of complimentary credit monitoring and identity theft protection services through Kroll.

Incident timeline

undetected · 10 days
discovery → filing · 9 weeks / 66 days

Nov 6, 2020

Begins

Nov 16, 2020

Discovered

Jan 21, 2021

Filed

vs. sector median

1 wks faster

This filing is one of 3 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (2) · sorted by filing gap

Filing propagation · 3 filings · 3 states

View merged incident ↗
Indiana State AGJan 20 · first
Maine State AGJan 20 · first
New Hampshire State AG+1d · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.