HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Nottingham Village
bd_471f6e396a00c05b · schema v1 · pii pii-v1
Full breach record for Nottingham Village →Nottingham Village notified the New Hampshire Attorney General of a cybersecurity incident affecting one NH resident. Unauthorized access occurred between Nov 8-9, 2025; discovered May 12, 2026. Personal info (name, SSN) was accessed. Nottingham Village secured the network, engaged forensic experts, and offered one year of credit monitoring. Notification sent May 22, 2026.
Leak gap clock✗ Leak >180d14 days discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 6 about the same incident.View merged incident
A leak claim by qilin about this victim predates this filing by 182 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_1b047c37c2f81f84Leak Siteqilinfiled 2025-11-25(182d gap)Candidate
Regulatory filings (4) · sorted by filing gap
- bd_9952bf286179d8c4Indiana State AGfiled 2026-05-22(4d gap)Verified
- bd_e0f0b0fa313f4075Maine State AGfiled 2026-05-22(4d gap)Verified
- bd_f6267039d415df6dHHS OCRfiled 2026-05-22(4d gap)Verified by operator
- bd_af10c79872d2b1d8Massachusetts State AGfiled 2026-05-01(25d gap)Verified by operator
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/nottingham-village-20260526.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 26, 2026
- Raw hash
- 9e11bcbbc3a119cf70430d494709bf0b94cc2f06acb4548cbed41c2ca85593f9
Reporting entity
- Name
- MCDONALD HOPKINS LLCnorm: mcdonald hopkins
Victim entity
- Name
- Nottingham Villagenorm: nottingham village
- Domain
- nottinghamvillage.org
Incident
- Discovered
- May 12, 2026
- Materiality determined
- —
- Notification sent
- May 22, 2026
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 14 days(14 days from discovery to filing)
- Compliance flags
- Leak >180d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.