Social EngineeringPhishingStolen CredentialsCustomer Data InvolvedTargetedPIIIDENTITY_BASICCREDENTIALSLowContained
Benefits Partner, LLC
bd_6ba1ebe57aa532db · schema v1 · pii pii-v1
Full breach record for Benefits Partner, LLC →Benefits Partner, LLC dba Salus Group notified affected individuals of unauthorized access to an employee's email account on October 9, 2024. The incident involved phishing leading to credential compromise. Salus engaged forensic investigators, reset credentials, and provided 12 months of Kroll identity monitoring to affected individuals. Data types included PII and credentials.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_10aac3957962ceceVermont State AGfiled 2025-04-07Verified
- bd_e5cfb6bd94dd69c8Washington State AGfiled 2025-04-07Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/benefits-partner-salus-group-20250407.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 7, 2025
- Raw hash
- e53a7da21a0c967f063105946a9f4d8993a2a8fbf9b69d11aa94982a37a9ba9e
Reporting entity
- Name
- Benefits Partner, LLCnorm: benefits partner
Victim entity
- Name
- Benefits Partner, LLCnorm: benefits partner
Incident
- Discovered
- Oct 9, 2024
- Materiality determined
- —
- Notification sent
- Mar 27, 2025
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICCREDENTIALS
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Initial access
- phishing_link
Compliance
- Time to disclose
- 26 weeks(180 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.