DisclosureLens
Social EngineeringTechnologyInformationPhishingCustomer Data InvolvedTargetedIdentity (basic)Government IDFinancial accountMediumContained

Ontario Systems, LLC

bd_7aa5d06d2b56a645 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Jun 22, 2020

Filed

Dec 31, 2020

To disclose

27 weeks

Affected

1state residents only

Linked

5 filings

Confidence

66%
Full breach record for Ontario Systems, LLC2 incidents on file

Ontario Systems, LLC notified the New Hampshire Attorney General of a phishing incident discovered on June 22, 2020. An unauthorized actor obtained an employee's credentials via phishing, accessed their email, and created forwarding rules targeting financial keywords. One NH resident's PII (name, address, DOB, SSN, financial account info) was potentially accessed. The company reset passwords, implemented MFA, and offered credit monitoring.

Incident timeline

undetected · 3 days
discovery → filing · 27 weeks / 192 days

Jun 19, 2020

Begins

Jun 22, 2020

Discovered

Dec 31, 2020

Filed

vs. sector median

+9 wks slower

This filing is one of 5 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (4) · sorted by filing gap

Filing propagation · 5 filings · 5 states

View merged incident ↗
Massachusetts State AGDec 31 · first
Maine State AGDec 31 · first
Montana State AGDec 31 · first
Indiana State AGDec 31 · first
New Hampshire State AGDec 31 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.