HackingStolen CredentialsCapture Stored DataCustomer Data InvolvedPIIIDENTITY_BASICLowContained
Scrubs and Beyond, LLC
bd_47b0419251356243 · schema v1 · pii pii-v1
Full breach record for Scrubs and Beyond, LLC →Scrubs & Beyond, LLC notified New Hampshire residents of unauthorized access to its network logs between April 7 and April 12, 2023. The company discovered the incident in June 2023, determined affected individuals on June 28, and filed this notice on July 21, 2023. 13 NH residents were affected. Personal information was potentially exposed. The company notified law enforcement, implemented additional safeguards, and offered one year of credit monitoring via Kroll.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_6dc443d4f8a2e879Maine State AGfiled 2023-07-21Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/scrubs-beyond-20230721.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 21, 2023
- Raw hash
- 201a7f276d89282f4d86737e12b1326c2b7dd65fa4c643001571ceaee4933be1
Reporting entity
- Name
- Scrubs and Beyond, LLCnorm: scrubs and beyond
Victim entity
- Name
- Scrubs and Beyond, LLCnorm: scrubs and beyond
Incident
- Discovered
- Jun 1, 2023
- Materiality determined
- Jun 28, 2023
- Notification sent
- Jul 21, 2023
- Affected individuals
- 13
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated Collection
- Threat actor
- External
- Regulator citations
- Notified federal law enforcementProviding written notice to relevant state regulators
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 7 weeks(50 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.