R3 Education
bd_9e69937e0c530840 · schema v1 · pii pii-v1
Full breach record for R3 Education →R3 Education Inc. notified the New Hampshire Attorney General of a cybersecurity incident discovered on November 7, 2023. An unauthorized party gained access to systems, encrypted data (ransomware), and potentially exfiltrated information. The breach affected 7,785 individuals, including 18 New Hampshire residents (employees and students). Data types included names, SSNs, and DOBs. R3 engaged forensic investigators, reset credentials, and offered credit monitoring. Notices were mailed starting March 25, 2024.
J jump to incidentP pin to compareR raw source
Incident timeline
Nov 7, 2023
Discovered
May 28, 2024
Filed
vs. sector median
+20 wks slower
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Massachusetts State AGbd_4a364e06442278782024-05-28Verified
- Maine State AGbd_aa05df0b3364d3e02024-05-28Verified
- California State AGbd_ba7f4c07ddee5ab42024-05-28Verified
- Montana State AGbd_e1c177816da456d52024-05-24 · +4dCandidate
Show 1 more filing ↓Show fewer ↑up to 64d gap
- Indiana State AGbd_e0a16b5a6841313c2024-03-25 · +64dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing Mar 25 (IN), last May 28 (NH) — a 64-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.