HackingSupply Chain (3P Vendor)Data ExfiltratedCustomer Data InvolvedPIIEMPLOYMENTIDENTITY_BASICLowContained
Halma plc
bd_460219805d057b65 · schema v1 · pii pii-v1
Full breach record for Halma plc →Halma plc notified the NH AG of a data incident involving 243 NH residents. On June 8, 2023, MOVEit (a third-party file transfer vendor) alerted Halma that US employee data was compromised and potentially exfiltrated. Halma engaged cybersecurity partners, monitored the dark web, and notified residents on June 12, 2023. Data types include employment and personal info.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_de423852a76ad2a4Maine State AGfiled 2023-07-07(16d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/halma-20230621.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 21, 2023
- Raw hash
- d46ba8d95dfc71207c86e63dc64a3fc99f4d696e1d7cdbe264d8d0c8ddc26aa9
Reporting entity
- Name
- Halma plcnorm: halma
Victim entity
- Name
- Halma plcnorm: halma
Incident
- Discovered
- Jun 8, 2023
- Materiality determined
- —
- Notification sent
- Jun 12, 2023
- Affected individuals
- 243
- Data types
- PIIEMPLOYMENTIDENTITY_BASIC
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain CompromiseT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney General
- Third party
- via MOVEit
- Initial access
- supply_chain
Compliance
- Time to disclose
- 13 days(13 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.