U.S. 1031 Exchange Services. Inc.
bd_6bfb2470723c5ada · schema v1 · pii pii-v1
Full breach record for U.S. 1031 Exchange Services. Inc. →U.S. 1031 Exchange Services, Inc. notified the New Hampshire Attorney General of a cybersecurity incident discovered on October 16, 2025. An unauthorized actor accessed files containing names, addresses, Social Security numbers, and bank account/routing numbers. 882 individuals were affected, including 5 New Hampshire residents. Notification letters were mailed on April 23, 2026. The company engaged forensic investigators, shut down workstations, reset passwords, implemented MFA, and provided 12 months of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 16, 2025
Discovered
Apr 23, 2026
Filed
vs. sector median
+19 wks slower
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- Maine State AGbd_2de9fe731e5d0b512026-04-23Candidate
- Massachusetts State AGbd_31404cf7184bba2f2026-04-23Verified
- Nebraska State AGbd_380ad88198cfab922026-04-23Verified
- Indiana State AGbd_eeeb90f271235d7f2026-04-23Verified
Show 4 more filings ↓Show fewer ↑up to 18d gap
- Indiana State AGbd_f3d0dcf0275591052026-04-23Verified
- Maine State AGbd_83579b33e44da3b62026-05-08 · +15dVerified
- New Hampshire State AGbd_af10ef47e2dbedc92026-05-08 · +15dCandidate
- Vermont State AGbd_861a4533ccb009072026-05-11 · +18dVerified
Filing propagation · 9 filings · 6 states
View merged incident ↗Pattern: first filing Apr 23 (ME), last May 11 (VT) — a 18-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.