HackingVulnerability ExploitData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Andesa
bd_7515e55209419011 · schema v1 · pii pii-v1
Full breach record for Andesa →Andesa Services, Inc. notified the New Hampshire Attorney General of a cybersecurity incident involving the MOVEit Transfer server. An actor exploited vulnerabilities to access the server between May 30 and May 31, 2023, and exfiltrated data. Andesa Services notified 14 New Hampshire residents on October 23, 2023, offering credit monitoring through Experian. The incident involved personal information and government identifiers.
Leak gap clock⏱ Leak >90d21 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
A leak claim by cl0p about this victim predates this filing by 124 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_18f81f490bcf9b00Maine State AGfiled 2023-10-25Verified
- bd_6c4814cd840b0507Montana State AGfiled 2023-10-23(2d gap)Candidate
- bd_871d7add6a1eb545California State AGfiled 2023-10-23(2d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/andesa-services-20231025.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 25, 2023
- Raw hash
- 3bc9a217b64fb95ff12fef427b61fd54132c7ecab169ef6850a8c13a0ee0e952
Reporting entity
- Name
- Andesanorm: andesa
- Domain
- andesaservices.com
Victim entity
- Name
- Andesanorm: andesa
- Domain
- andesaservices.com
Incident
- Discovered
- May 31, 2023
- Materiality determined
- —
- Notification sent
- Oct 23, 2023
- Affected individuals
- 14
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 21 weeks(147 days from discovery to filing)
- Compliance flags
- Leak >90d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.