MalwareRansomwareData ExfiltratedCustomer Data InvolvedRansom DemandedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
Sullivan, Hayes, and Quinn, LLC
bd_a3892e412159756f · schema v1 · pii pii-v1
Full breach record for Sullivan, Hayes, and Quinn, LLC →Sullivan, Hayes & Quinn, LLC, a Massachusetts law firm, notified the New Hampshire Attorney General on May 17, 2021, of a ransomware attack discovered on April 11, 2021. The incident potentially exposed the personal information (name, address, SSN) of one New Hampshire resident. No ransom was paid, and no evidence of actual compromise was found. The firm engaged forensic experts, notified employees, and provided 24 months of complimentary identity monitoring via Experian.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/sullivan-hayes-quinn-20210517.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 17, 2021
- Raw hash
- 65b48b1a6dfe3ff045a4630b1709173b85bcaad3aeb76dc0eedd443d6c4611bb
Reporting entity
- Name
- Sullivan, Hayes, and Quinn, LLCnorm: sullivan hayes and quinn
- Domain
- sullivanandhayes.com
Victim entity
- Name
- Sullivan, Hayes, and Quinn, LLCnorm: sullivan hayes and quinn
- Domain
- sullivanandhayes.com
Incident
- Discovered
- Apr 11, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 1
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 5 weeks(36 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.