HackingStolen CredentialsData ExfiltratedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Haverford Township Official Website
bd_93934bd34326e86e · schema v1 · pii pii-v1
Full breach record for Haverford Township Official Website →Haverford Township, PA, notified consumers of a cybersecurity incident detected on April 17, 2023, involving unauthorized network access. Forensic investigators could not determine the volume of data accessed. The incident potentially exposed personal information including names and government IDs. The Township engaged external cybersecurity professionals and is offering complimentary credit monitoring services to affected individuals.
Vermont clock✗ VT AG >45 bday50 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_17333fbcbcdb23edMontana State AGfiled 2024-04-02Candidate
- bd_237e2e21f6f1369dIndiana State AGfiled 2024-04-02Verified
- bd_34b43e9d32eed398Delaware State AGfiled 2024-04-02Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-04-02-haverford-township-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 2, 2024
- Raw hash
- 5e309797cd1fc786bbfdfe03d191aa894602d6734ef52f1f8501dac3fcfd8fb1
Reporting entity
- Name
- Haverford Township Official Websitenorm: haverford township official website
- Domain
- havtwp.org
Victim entity
- Name
- Haverford Township Official Websitenorm: haverford township official website
- Domain
- havtwp.org
Incident
- Discovered
- Apr 17, 2023
- Materiality determined
- —
- Notification sent
- Apr 2, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 50 weeks(351 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.