HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICPIIMediumContained
Madeira USA LLC
bd_949fcaa36bc774b6 · schema v1 · pii pii-v1
Full breach record for Madeira USA LLC →Madeira USA LLC notified the New Hampshire Attorney General of a cybersecurity incident on October 27, 2025. Unauthorized access occurred on October 8, 2025, affecting 101 NH residents. Compromised data included names, SSNs, passport numbers, driver's license numbers, and medical information. The company contained the breach, notified law enforcement, and provided one year of credit monitoring to affected individuals.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_2dc8d3084202553cMaine State AGfiled 2025-10-27Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/madeira-20251027.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 27, 2025
- Raw hash
- 04a0f3147308a045d4fa9deb3bcccc05d36ca81ccf86a7de8f20704348b1ba35
Reporting entity
- Name
- Madeira USA LLCnorm: madeira usa
Victim entity
- Name
- Madeira USA LLCnorm: madeira usa
Incident
- Discovered
- Oct 8, 2025
- Materiality determined
- —
- Notification sent
- Oct 27, 2025
- Affected individuals
- 101
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICPII
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney General
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 19 days(19 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.