DisclosureLens
MalwareRetail & ConsumerRetailRansomwareData EncryptedCustomer Data InvolvedIdentity (basic)Government IDMediumContained

Phil Smith Automotive Group

bd_429e89d3c30c21cc · schema v1 · pii pii-v1

Severity

Medium

Discovered

Feb 1, 2025

Filed

Jul 31, 2025

To disclose

26 weeks

Affected

19state residents only

Linked

6 filings

Confidence

66%

Phil Smith Automotive Group experienced a ransomware attack in early February 2025, resulting in unauthorized access to IT systems. Personal information, including names, Social Security numbers, and driver's license numbers, of 19 New Hampshire residents may have been accessed. The company notified the FBI, engaged cybersecurity specialists, and is offering two years of credit monitoring to affected individuals.

Leak gap clock Leak >90d26 weeks discovery → filing

Incident timeline

discovery → filing · 26 weeks / 180 days

Feb 1, 2025

Begins

Feb 1, 2025

Discovered

Jul 31, 2025

Filed

vs. sector median

+18 wks slower

This filing is one of 6 about the same incident.View merged incident
A leak claim by dragonforce about this victim predates this filing by 173 days.View originating leak claim

Linked disclosures

Why this link?

Ransomware claims (2)

Regulatory filings (3) · sorted by filing gap

Filing propagation · 4 filings · 4 states

View merged incident ↗
Maine State AGJul 31 · first
Massachusetts State AGJul 31 · first
Indiana State AGJul 31 · first
New Hampshire State AGJul 31 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.