HackingBECData ExfiltratedCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
Pickard Chilton Architects
bd_705f7fa2c341010b · schema v1 · pii pii-v1
Full breach record for Pickard Chilton Architects →Pickard Chilton Architects notified the New Hampshire Attorney General of a data security incident discovered on March 5, 2021. An unknown actor accessed the firm's Office 365 environment using valid credentials to redirect employee payroll deposits (Business Email Compromise). Approximately 1 New Hampshire resident was affected, with data potentially including SSNs and dates of birth. The firm engaged forensic experts, reset passwords, implemented MFA, and offered credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/pickard-chilton-architects-20210614.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 14, 2021
- Raw hash
- bd159fa7b61986b1f08f1baec16982ce644b51ac31c4e0025bcd73f0143493bd
Reporting entity
- Name
- Pickard Chilton Architectsnorm: pickard chilton architects
Victim entity
- Name
- Pickard Chilton Architectsnorm: pickard chilton architects
Incident
- Discovered
- Mar 5, 2021
- Materiality determined
- —
- Notification sent
- Jun 16, 2021
- Affected individuals
- 1
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1114 Email CollectionT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified the FBI to investigate
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 14 weeks(101 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.