HackingData ExfiltratedCustomer Data InvolvedPIIIDENTITY_BASICLowContained
ICM
bd_5264657195b3dc99 · schema v1 · pii pii-v1
Full breach record for ICM →ICM Properties, Inc. notified the New Hampshire Attorney General of a cybersecurity incident where unauthorized access occurred between December 9-10, 2025. The breach affected one New Hampshire resident, compromising personal information. ICM shut down systems, engaged forensic investigators, and offered 12 months of credit monitoring via Kroll. Notification letters were mailed on February 18, 2026.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_fcf0a77685ee3c97Indiana State AGfiled 2026-02-18Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/icm-properties-20260218.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 18, 2026
- Raw hash
- 1bb8f69bf3db3c44f7506fee857ad169da124231dbc81849691fc46a2381ba4e
Reporting entity
- Name
- Wilson, Elser, Moskowitz, Edelman & Dicker LLPnorm: wilson elser moskowitz edelman dicker
Victim entity
- Name
- ICMnorm: icm
- Domain
- icm.org
Incident
- Discovered
- Dec 10, 2025
- Materiality determined
- —
- Notification sent
- Feb 18, 2026
- Affected individuals
- 1
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- Notified New Hampshire Attorney General Consumer Protection Bureau
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 10 weeks(70 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.