HackingIDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTMediumContained
Creative Services, Inc.
bd_46b3db9060c7d4b6 · schema v1 · pii pii-v1
Full breach record for Creative Services, Inc. →Creative Services, Inc. reported a security breach affecting New Hampshire residents. The company identified the incident on or around January 21, 2022, involving unauthorized access to employee and resident data. Compromised information included names, driver's license numbers, financial account numbers, and Social Security numbers. The company took steps to identify the scope of the incident.
This filing is one of 10 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (9) · sorted by filing gap
- bd_750ed45764cbfacfSouth Carolina State AGfiled 2022-02-24(4d gap)Verified
- bd_1be64c03d8c522bdMaine State AGfiled 2022-02-23(5d gap)Verified
- bd_737a9c0214d5b59eMontana State AGfiled 2022-02-23(5d gap)Verified
- bd_fa6006624ab4fa0cCalifornia State AGfiled 2022-02-23(5d gap)Verified
Show 5 more filings ↓Show fewer ↑up to 53d gap
- bd_512e294023a08ef7New Hampshire State AGfiled 2022-02-07(21d gap)Verified
- bd_5b7645ca55904b9fMaine State AGfiled 2022-02-01(27d gap)Candidate
- bd_361b96baa57efa2bMaine State AGfiled 2022-04-18(49d gap)Verified
- bd_3c3b61d1f85192c6California State AGfiled 2022-04-18(49d gap)Verified
- bd_57dcbca496f5c717New Hampshire State AGfiled 2022-04-22(53d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/creative-services-20220228.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 28, 2022
- Raw hash
- db96923a26b2f21827cd21178e107c436460cba01a9729f305cdeaa6ad3b6c3d
Reporting entity
- Name
- Creative Services, Inc.norm: creative services
- Domain
- creativeservices.com
Victim entity
- Name
- Creative Services, Inc.norm: creative services
- Domain
- creativeservices.com
Incident
- Discovered
- Jan 21, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 5 weeks(38 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.