MAX USA Corp.
bd_751bb5530112b299 · schema v1 · pii pii-v1
Full breach record for MAX USA Corp. →MAX USA Corp. notified the New Hampshire Attorney General of a security incident occurring between January 11-13, 2026. An unauthorized third party accessed the network, viewing and exfiltrating business and employment records including SSNs, driver's licenses, and financial/health data. One NH resident was affected. MAX USA contained the breach, engaged forensic specialists, notified the FBI, and offered 24 months of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 11, 2026
Begins
Jan 13, 2026
Discovered
Feb 20, 2026
Filed
vs. sector median
2 wks faster
Linked disclosures
Why this link?Ransomware claims (2)
- Leak Sitelockbit5bd_b670437a600ae18f2026-02-15 · +4dVerified by operator
- Leak Sitelockbit5bd_e7cf7b6edda22c762026-01-26 · +25dVerified by operator
Regulatory filings (2) · sorted by filing gap
- Massachusetts State AGbd_d7f76c6a659b0c5b2026-02-18 · +2dVerified
- Nebraska State AGbd_cdd2d0c79f44fe3b2026-01-15 · +36dVerified
Filing propagation · 3 filings · 3 states
View merged incident ↗Pattern: first filing Jan 15 (NE), last Feb 20 (NH) — a 36-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.