MalwareRansomwareData ExfiltratedData EncryptedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Johnson, Webbert, & Beard LLP
bd_a00e22fe66f17b55 · schema v1 · pii pii-v1
Full breach record for Johnson, Webbert, & Beard LLP →Johnson, Webbert & Beard, LLP (JWB) notified the New Hampshire Attorney General of a ransomware incident discovered on September 19, 2025. Unauthorized access occurred between September 15 and 19, 2025, potentially exposing personal information, including SSNs and financial account data, of 18 New Hampshire residents. JWB secured its network, engaged forensic investigators, and reported the incident to the FBI. Notifications were sent to affected individuals on May 7, 2026, offering credit monitoring services.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_0eb000d78e850cf0Indiana State AGfiled 2026-05-07(4d gap)Verified
- bd_253f67234c3f93e5Maine State AGfiled 2026-05-07(4d gap)Verified by operator
- bd_3aae894bc66bf6b9Vermont State AGfiled 2026-05-07(4d gap)Verified
- bd_34e045524244cf24Massachusetts State AGfiled 2026-05-01(10d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/johnson-webbert-beard-20260511.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 11, 2026
- Raw hash
- cd9992e800821a1e7dc9667926b880dc2f302952b4cd7bc9ee647603cc1d818c
Reporting entity
- Name
- MCDONALD HOPKINS LLCnorm: mcdonald hopkins
Victim entity
- Name
- Johnson, Webbert, & Beard LLPnorm: johnson webbert beard
- Industry
- professional_services
Incident
- Discovered
- Sep 19, 2025
- Materiality determined
- —
- Notification sent
- May 7, 2026
- Affected individuals
- 18
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- reported the incident to the Federal Bureau of Investigation
Compliance
- Time to disclose
- 33 weeks(234 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.