Social EngineeringPhishingStolen CredentialsMulti-Stage ChainCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Tristar Group
bd_9449f03ad3d6982f · schema v1 · pii pii-v1
Full breach record for Tristar Group →TRISTAR Insurance Group notified New Hampshire residents of a security incident where unauthorized access to email and systems occurred between Nov 4-9, 2022, following suspicious activity detected on Nov 10, 2022. The breach exposed personal information including SSNs and financial data. TRISTAR engaged forensic specialists, notified law enforcement, and provided credit monitoring services.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_a90284032b05fe16California State AGfiled 2024-02-01(46d gap)Verified
- bd_d4f88d85def79680Indiana State AGfiled 2024-02-01(46d gap)Verified
- bd_e4c57a2c71196cb5New Hampshire State AGfiled 2024-02-01(46d gap)Verified
- bd_c6053076ac9ab7e1Montana State AGfiled 2024-01-19(59d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 98d gap
- bd_38cc11377e6d2c0fCalifornia State AGfiled 2023-12-11(98d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/tristar-insurance-group-20240318.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 18, 2024
- Raw hash
- ba307869fd7333cd74a343a6b9cfb59b9bf5c4a4aecf0a19795d8ed558ec9f50
Reporting entity
- Name
- Tristar Groupnorm: tristar group
- Domain
- tristargroup.net
Victim entity
- Name
- Tristar Groupnorm: tristar group
- Domain
- tristargroup.net
Incident
- Discovered
- Nov 10, 2022
- Materiality determined
- Nov 1, 2023
- Notification sent
- Mar 18, 2024
- Affected individuals
- 2
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- notified federal law enforcement regarding the eventproviding written notice of this incident to relevant state regulators
- Initial access
- phishing_link
Compliance
- Time to disclose
- 16 months(494 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.