NEW ENGLAND REGIONAL MORTGAGE CORPORATION
bd_47630f08d59ca551 · schema v1 · pii pii-v1
Full breach record for NEW ENGLAND REGIONAL MORTGAGE CORPORATION →New England Regional Mortgage Corporation notified the NH Attorney General of a phishing attack on September 25, 2018, where three employee email accounts were compromised. The attack involved a message appearing to come from a legitimate person within the organization, requesting borrowers to accept wiring instructions. Two other accounts had auto-forwarding set up. The company suspended accounts, reset passwords, implemented 2-step verification, and offered credit monitoring to affected consumers. It is unclear if data was accessed, but nonpublic personal information (NPPI) and payment information may have been compromised.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 25, 2018
Begins
Sep 25, 2018
Discovered
Oct 15, 2018
Filed
vs. sector median
6 wks faster
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- Massachusetts State AGbd_ecfcd0d6f9e2f2882018-10-10 · +5dVerified
Filing propagation · 2 filings · 2 states
View merged incident ↗Pattern: first filing Oct 10 (MA), last Oct 15 (NH) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.