Direct Travel, Inc.
bd_5da64defbb2a3aec · schema v1 · pii pii-v1
Full breach record for Direct Travel, Inc. →Direct Travel, Inc. notified the New Hampshire Attorney General of a data security incident involving its cloud-service-provider. On April 28, 2021, an unauthorized individual acquired some of Direct Travel's data. The incident affected 4 New Hampshire residents, exposing dates of birth and/or passport numbers. Direct Travel retained forensic experts, enhanced network security, increased password complexity, and offered 12 months of complimentary identity monitoring via TransUnion. Notification letters were mailed on October 18, 2021.
J jump to incidentP pin to compareR raw source
Incident timeline
Apr 28, 2021
Begins
Oct 18, 2021
Filed
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Montana State AGbd_1fc29e5880d621022021-10-18Candidate
- Maine State AGbd_871b7bbf367d18582021-10-18Verified
- Massachusetts State AGbd_ef2766c60d3100aa2021-10-19 · +1dVerified
Filing propagation · 4 filings · 4 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.