DisclosureLens
MalwareProfessional ServicesProfessional ServicesRansomwareData EncryptedCustomer Data InvolvedGovernment IDIdentity (basic)MediumContained

Fonville Morisey

bd_940cc3564615214b · schema v1 · pii pii-v1

Severity

Medium

Discovered

Oct 26, 2021

Filed

Dec 29, 2021

To disclose

9 weeks

Affected

3state residents only

Linked

6 filings

Confidence

66%
Full breach record for Fonville Morisey2 incidents on file

Fonville Morisey notified the New Hampshire Attorney General of a ransomware attack discovered on October 26, 2021. The attacker accessed systems between October 22 and 28, 2021, encrypting files containing employee and customer names and Social Security numbers. Three New Hampshire residents were affected. Fonville Morisey offered two years of credit monitoring and implemented MFA.

Incident timeline

undetected · 4 days
discovery → filing · 9 weeks / 64 days

Oct 22, 2021

Begins

Oct 26, 2021

Discovered

Dec 29, 2021

Filed

vs. sector median

10 wks faster

This filing is one of 6 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (5) · sorted by filing gap

Show 1 more filing

Filing propagation · 6 filings · 5 states

View merged incident ↗
Indiana State AGDec 29 · first
Maine State AGDec 29 · first
Montana State AGDec 29 · first
Massachusetts State AGDec 29 · first
Maine State AGDec 29 · first
New Hampshire State AGDec 29 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.