Social EngineeringPhishingTargetedCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
BLOOMSBURY PUBLISHING INC.
bd_9943c0fb19786cbe · schema v1 · pii pii-v1
Full breach record for BLOOMSBURY PUBLISHING INC. →Bloomsbury Publishing, Inc. reported a data event to the New Hampshire Attorney General on May 11, 2026. An unknown individual impersonated a company executive on April 2, 2026, to obtain employees' 2025 Form W-2s containing names and Social Security numbers. Bloomsbury discovered the incident on April 15, 2026, and notified approximately four New Hampshire residents. Response actions included notifying law enforcement, sending written notices, and providing two years of complimentary credit monitoring through IDX.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed4 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/bloomsbury-publishing-20260511.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 11, 2026
- Raw hash
- 9fbdb6b54a07ed97286980069ec4d821870b264a5e9fcdcfde253bd72557afc7
Reporting entity
- Name
- Mullen Coughlin LLCnorm: mullen coughlin
Victim entity
- Name
- BLOOMSBURY PUBLISHING INC.norm: bloomsbury publishing
Incident
- Discovered
- Apr 15, 2026
- Materiality determined
- —
- Notification sent
- May 11, 2026
- Affected individuals
- 4
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified federal law enforcement regarding the event
- Initial access
- phishing_link
Compliance
- Time to disclose
- 26 days(26 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.