HackingIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICMediumContained
Arcadia Bluffs
bd_568bd4dda3008dc0 · schema v1 · pii pii-v1
Full breach record for Arcadia Bluffs →The Bluffs of Arcadia LLC notified the New Hampshire Attorney General of a data security incident discovered on January 2, 2026. Suspicious network activity led to system disconnection and forensic investigation. One NH resident was affected, with personal data including names, addresses, SSNs, health insurance numbers, medical conditions, financial account numbers, driver's license numbers, and taxpayer IDs potentially exposed. The company changed passwords, added endpoint detection, and offered 12 months of identity theft protection via IDX.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/bluffs-arcadia-20260702.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 2, 2026
- Raw hash
- 440a28b8994e43722b591e05556aae22ee6dbffe16d3e25041c84a86b315a9c0
Reporting entity
- Name
- Arcadia Bluffsnorm: arcadia bluffs
- Domain
- arcadiabluffs.edencreative.co
Victim entity
- Name
- Arcadia Bluffsnorm: arcadia bluffs
- Domain
- arcadiabluffs.edencreative.co
Incident
- Discovered
- Jan 2, 2026
- Materiality determined
- —
- Notification sent
- Jun 29, 2026
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified New Hampshire Department of Justice
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 26 weeks(181 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.