Social EngineeringPhishingCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
McClallen & Associates, P.C.
bd_6c62121b0a678728 · schema v1 · pii pii-v1
Full breach record for McClallen & Associates, P.C. →McClallen & Associates, P.C. (dba McClallen Law) notified the New Hampshire Attorney General of a phishing incident affecting two corporate email accounts. Unauthorized access occurred between December 1, 2025, and December 18, 2025. The firm discovered on January 20, 2026, that the emails contained full names and Social Security numbers of one New Hampshire resident. Notifications were sent on February 20, 2026, offering one year of credit monitoring via Experian.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_1a5f6ccbfcf3b917Vermont State AGfiled 2026-02-20(6d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/mcclallen-associates-mcclallen-law-20260226.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 26, 2026
- Raw hash
- d833ab1fd958ce3f1cd4d4856e1482721a4481cca125d3d4c36b531d9f61a95e
Reporting entity
- Name
- MCDONALD HOPKINS LLCnorm: mcdonald hopkins
Victim entity
- Name
- McClallen & Associates, P.C.norm: mcclallen associates
Incident
- Discovered
- Jan 20, 2026
- Materiality determined
- —
- Notification sent
- Feb 20, 2026
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- ExternalFinancial
- Initial access
- phishing_link
Compliance
- Time to disclose
- 5 weeks(37 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.