MalwarePhishingRansomwareQilinData EncryptedData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHighContained
Gulshan Management Services
bd_a465700a822b3c12 · schema v1 · pii pii-v1
Full breach record for Gulshan Management Services →Gulshan Management Services, Inc. reported a data breach to the New Hampshire Attorney General on January 5, 2025. The incident involved a phishing attack on September 17, 2025, leading to Qilin ransomware encryption of network portions. Approximately 4,403 New Hampshire residents were affected, with personal information including names, SSNs, and driver's license numbers exposed. GMS reset credentials, rebuilt systems from backups, and engaged forensic investigators and Kroll for credit monitoring.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_4d1d56b0a51c0c71Vermont State AGfiled 2026-01-05Verified
- bd_78a97382f455f091Indiana State AGfiled 2026-01-05Candidate
- bd_217671fec1634ed9Maine State AGfiled 2026-01-06(1d gap)Verified
- bd_24f2f711ac332f95Iowa State AGfiled 2026-01-06(1d gap)Verified
Show 2 more filings ↓Show fewer ↑up to 70d gap
- bd_62380f5de3719fcbSouth Carolina State AGfiled 2026-01-06(1d gap)Verified
- bd_98d92f168972093aTexas State AGfiled 2026-03-16(70d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/gulshan-management-services-20260105.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 5, 2026
- Raw hash
- 6fc7c1d018c78d25e538da9848df00856843747e496d312b79596aca15d24055
Reporting entity
- Name
- Gulshan Management Servicesnorm: gulshan management
Victim entity
- Name
- Gulshan Management Servicesnorm: gulshan management
Incident
- Discovered
- Sep 27, 2025
- Materiality determined
- —
- Notification sent
- Jan 5, 2026
- Affected individuals
- 4,403
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified law enforcement and regulatory authorities in relevant jurisdictions
- Initial access
- phishing_link
Compliance
- Time to disclose
- 14 weeks(100 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.