HackingIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
TRUSTEES OF BOSTON UNIVERSITY
bd_5a72999d31cef493 · schema v1 · pii pii-v1
Full breach record for TRUSTEES OF BOSTON UNIVERSITY →Boston University notified the New Hampshire Attorney General of a security incident involving an anonymous FTP server running on a shared Army ROTC Windows desktop. The server permitted public access to personal information, including names, Social Security Numbers, addresses, and dates of birth. Approximately 47 New Hampshire residents were affected. The University secured the server and offered one year of free credit monitoring through Debix, Inc.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed47 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/boston-university-20090817.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 17, 2009
- Raw hash
- ff984d9ed0af943dc92896ddfdab4910508ba2a8ab798c8b8f543395990d4c6d
Reporting entity
- Name
- TRUSTEES OF BOSTON UNIVERSITYnorm: trustees of boston university
Victim entity
- Name
- TRUSTEES OF BOSTON UNIVERSITYnorm: trustees of boston university
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 47
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- Notified the Massachusetts Attorney GeneralNotified the Director of Consumer Affairs and Business Regulation
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.