Social EngineeringPhishingStolen CredentialsCustomer Data InvolvedTargetedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Copeland Chevrolet
bd_616959e0356f4e04 · schema v1 · pii pii-v1
Full breach record for Copeland Chevrolet →Copeland Chevrolet notified the NH AG that on August 4, 2025, suspicious activity was identified in an employee email account. The account was compromised, exposing customer names, SSNs, driver's license numbers, state IDs, and financial account information. Four NH residents were affected. Copeland secured the account, engaged forensic experts, implemented MFA, and offered 12 months of credit monitoring via Kroll.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_89b4e2dca0bb0e73Maine State AGfiled 2025-10-16(6d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/copeland-chevrolet-20251022.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 22, 2025
- Raw hash
- edb6a3600a8d52d1e5e9765db074c6ac8e251f7fcd49341510d02ceb9e6694cf
Reporting entity
- Name
- CLARK HILL PLCnorm: clark hill
Victim entity
- Name
- Copeland Chevroletnorm: copeland chevrolet
Incident
- Discovered
- Aug 4, 2025
- Materiality determined
- —
- Notification sent
- Oct 16, 2025
- Affected individuals
- 4
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Office of the Attorney General
- Initial access
- phishing_link
Compliance
- Time to disclose
- 11 weeks(79 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.