DisclosureLens
HackingProfessional ServicesProfessional ServicesSupply Chain (3P Vendor)Customer Data InvolvedData ExfiltratedPIIIdentity (basic)LowContained

McNeill Baur PLLC

bd_61793d8f5733fd44 · schema v1 · pii pii-v1

Severity

Low

Discovered

Nov 30, 2023

Filed

Feb 6, 2024

To disclose

10 weeks

Affected

1state residents only

Linked

2 filings

Confidence

66%
Full breach record for McNeill Baur PLLC

McNeill Baur PLLC reported a third-party data security incident involving its payroll vendor, Paycor. Paycor experienced a breach via the MOVEit software vulnerability, resulting in the unauthorized download of files containing personal information for some current and former employees on or around May 31, 2023. McNeill Baur learned of the incident on November 30, 2023. One New Hampshire resident was notified. McNeill Baur partnered with Experian to provide complimentary identity monitoring and credit monitoring services to affected individuals.

Incident timeline

undetected · 183 days
discovery → filing · 10 weeks / 68 days

May 31, 2023

Begins

Nov 30, 2023

Discovered

Feb 6, 2024

Filed

vs. sector median

9 wks faster

This filing is one of 2 about the same incident.View merged incident
Part of Paycor supply-chain incident (2023) — a supply-chain cascade affecting multiple organizations.View cascade →

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings · 2 states

View merged incident ↗
New Hampshire State AGFeb 6 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.