HackingStolen CredentialsCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Fullbeauty Brands, Inc.
bd_91acf73a54463ef0 · schema v1 · pii pii-v1
Full breach record for Fullbeauty Brands, Inc. →FullBeauty Brands, Inc. notified the New Hampshire Attorney General of a cybersecurity incident occurring between October 18 and November 19, 2025. An unauthorized individual accessed the network and copied files containing employment-related information, including names, Social Security numbers, and health plan enrollment data, affecting six New Hampshire residents. Notifications were mailed starting January 16, 2026, offering one year of credit monitoring.
Leak gap clock⏱ Leak >30d13 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
A leak claim by everest about this victim predates this filing by 68 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_b418380b472e7872Leak Siteeverestfiled 2025-11-13(68d gap)Verified
Regulatory filings (2) · sorted by filing gap
- bd_e4181d69cc7d2fe3Texas State AGfiled 2026-01-23(2d gap)Verified
- bd_e39cdf0211b8ccc5Indiana State AGfiled 2026-01-16(5d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/fullbeauty-brands-20260121.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 21, 2026
- Raw hash
- fd5daddfb014cb417a750594e00f01707b8bac49c103b460da5085529f8bc887
Reporting entity
- Name
- Fullbeauty Brands, Inc.norm: fullbeauty brands
- Domain
- fbbrands.com
Victim entity
- Name
- Fullbeauty Brands, Inc.norm: fullbeauty brands
- Domain
- fbbrands.com
Incident
- Discovered
- Oct 22, 2025
- Materiality determined
- —
- Notification sent
- Jan 16, 2026
- Affected individuals
- 6
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 13 weeks(91 days from discovery to filing)
- Compliance flags
- Leak >30d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.