HackingCustomer Data InvolvedPIIIDENTITY_BASICLowContained
New York School of Interior Design
bd_6be3b12f905fb644 · schema v1 · pii pii-v1
Full breach record for New York School of Interior Design →New York School of Interior Design (NYSID) notified New Hampshire residents of a data breach occurring between November 2 and 26, 2023. NYSID detected suspicious activity on November 27, 2023. The incident involved unauthorized access to files and systems by an unknown actor. NYSID reported the incident to federal law enforcement, deployed advanced threat protection, and offered credit monitoring services to affected individuals.
Leak gap clock✗ Leak >180d32 weeks discovery → filing
This filing is one of 7 about the same incident.View merged incident
A leak claim by inc_ransom about this victim predates this filing by 206 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_072b47ba73bbb76dCalifornia State AGfiled 2024-07-09Verified
- bd_3bacf85c0cf7fce1Maine State AGfiled 2024-07-09Candidate
- bd_604803ebe15205a8Vermont State AGfiled 2024-07-09Verified
- bd_94426b056b4c3501Montana State AGfiled 2024-07-09Verified
Show 2 more filings ↓Show fewer ↑
- bd_ad7e1e8765dad4f6Indiana State AGfiled 2024-07-09Verified
- bd_f890fd0b29ec2e97Washington State AGfiled 2024-07-09Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/new-york-school-interior-design-20240709.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 9, 2024
- Raw hash
- b106a196b55499625eff229906ef25f9945413030a7ba8f8febc05ae975b740e
Reporting entity
- Name
- New York School of Interior Designnorm: new york school of interior design
- Domain
- nysid.edu
Victim entity
- Name
- New York School of Interior Designnorm: new york school of interior design
- Domain
- nysid.edu
Incident
- Discovered
- Nov 27, 2023
- Materiality determined
- Jun 17, 2024
- Notification sent
- Jul 9, 2024
- Affected individuals
- 50
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- notified federal law enforcement regarding the eventproviding written notice of this incident to relevant state and federal regulators, as necessary
Compliance
- Time to disclose
- 32 weeks(225 days from discovery to filing)
- Compliance flags
- Leak >180d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.