Resort Data Processing
bd_8d365a8625c524b1 · schema v1 · pii pii-v1
Full breach record for Resort Data Processing →4 incidents on fileResort Data Processing, Inc. (RDP) notified the New Hampshire Attorney General of a cybersecurity attack on its online booking engine. Attackers exploited a vulnerability to exfiltrate credit/debit card data, names, and contact info from approximately 59 NH residents. The incident occurred between Feb 22, 2021, and June 14, 2021. RDP terminated access, deployed a security patch, and engaged forensic investigators.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 22, 2021
Begins
Jun 14, 2021
Discovered
Jul 22, 2021
Filed
vs. sector median
13 wks faster
Linked disclosures
Why this link?Regulatory filings (9) · sorted by filing gap
- Oregon State AGbd_7ff3dec2010370682021-07-22Verified
- California State AGbd_9dcdd5d44158e3b02021-07-22Verified
- Montana State AGbd_26e0d8d5acfcd4f82021-07-23 · +1dVerified
- Massachusetts State AGbd_9f4b7050f82829782021-07-23 · +1dVerified
Show 5 more filings ↓Show fewer ↑up to 8d gap
- Montana State AGbd_ccfadf2ce48081122021-07-23 · +1dVerified
- Montana State AGbd_8b312adb02cdb1752021-07-27 · +5dVerified
- Maine State AGbd_32db99b757ca2d672021-07-14 · +8dCandidate
- Indiana State AGbd_602f99f557079f092021-07-14 · +8dVerified
- Washington State AGbd_78e25fe4ecbfdb012021-07-14 · +8dVerified
Filing propagation · 10 filings · 8 states
View merged incident ↗Pattern: first filing Jul 14 (ME), last Jul 27 (MT) — a 13-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.