LENDUS, LLC
bd_9a3e6b812dd9fdeb · schema v1 · pii pii-v1
Full breach record for LENDUS, LLC →LendUS, LLC notified the New Hampshire Attorney General of a security incident involving unauthorized access to employee email accounts between February 2 and March 22, 2021. The breach affected two New Hampshire residents, exposing names, Social Security numbers, financial account numbers, and/or payment card numbers. LendUS discovered the incident on December 21, 2021, and began notifying affected individuals on January 19, 2022. Remediation included password resets, multi-factor authentication, and security awareness training. Affected individuals received one year of credit monitoring via Equifax.
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_87db8f014dfc07b3California State AGfiled 2022-01-19Verified
- bd_9cbcb1ec41d60f62Washington State AGfiled 2022-01-19Candidate
- bd_b44ce707c8fe0b56Oregon State AGfiled 2022-01-19Verified
- bd_b92ed46c617793beMontana State AGfiled 2022-01-19Verified by operator
Show 1 more filing ↓Show fewer ↑
- bd_f4cb33939803f729Maine State AGfiled 2022-01-19Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/lendus-20220119.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 19, 2022
- Raw hash
- 9ff3706ab7d3f659f130a0989dda2ea407445fee755e9fe3bf046f9dfb04e521
Reporting entity
- Name
- LENDUS, LLCnorm: lendus
Victim entity
- Name
- LENDUS, LLCnorm: lendus
Incident
- Discovered
- Dec 21, 2021
- Materiality determined
- —
- Notification sent
- Jan 19, 2022
- Affected individuals
- 2
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 29 days(29 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.