HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNTMediumContained
Century Support Services
bd_7811262cc0c272ef · schema v1 · pii pii-v1
Full breach record for Century Support Services →Century Support Services (dba Next Level Finance Partners) notified consumers of a data breach where an unauthorized party accessed systems on or about November 7, 2024. The incident exposed personal information including names, SSNs, driver's licenses, medical/health insurance info, and financial account data. No evidence of identity theft was found. The company engaged forensic experts and established a toll-free response line.
Vermont clock⏱ VT AG >14 bday7 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_85cc7f741f8f9a07Texas State AGfiled 2025-07-15Verified by operator
- bd_0882ae17fc439c0cMontana State AGfiled 2025-07-14(1d gap)Candidate
- bd_99ff84979a03eddfMaine State AGfiled 2025-07-14(1d gap)Verified by operator
- bd_fb02fe0a14f1618dCalifornia State AGfiled 2025-07-14(1d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 3d gap
- bd_743b96b7b233f6d3New Hampshire State AGfiled 2025-07-18(3d gap)Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2025-07-15-next-level-finance-partners-dba-century-support-services-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 15, 2025
- Raw hash
- 8d6d579e94f8021a2886756e4a64ab1301e15a9934edacd4583daa1792befb8c
Reporting entity
- Name
- Next Level Finance Partnersnorm: next level finance
Victim entity
- Name
- Century Support Servicesnorm: century support
Incident
- Discovered
- May 30, 2025
- Materiality determined
- —
- Notification sent
- Jun 27, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 7 weeks(46 days from discovery to filing)
- Compliance flags
- VT AG >14 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.