Social EngineeringPhishingStolen CredentialsCustomer Data InvolvedPIIIDENTITY_BASICLowContained
Max-Tech, Inc
bd_a47e08282fe51bae · schema v1 · pii pii-v1
Full breach record for Max-Tech, Inc →Max-Tech, Inc. notified the New Hampshire Attorney General of unauthorized access to employee email accounts. Suspicious activity was detected on January 20, 2023, revealing access between September 2022 and January 2023. Two New Hampshire residents were affected. Max-Tech secured accounts, investigated, and offered credit monitoring.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_ab6c677aa02ff5d2Vermont State AGfiled 2023-06-22(4d gap)Verified
- bd_adc7b8f047389a29Maine State AGfiled 2023-06-22(4d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/max-tech-20230626.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 26, 2023
- Raw hash
- 6292090325bff893c1010823bc962f713c32f6ae0dde1eca851b78ce5405ca76
Reporting entity
- Name
- Max-Tech, Incnorm: max tech
Victim entity
- Name
- Max-Tech, Incnorm: max tech
Incident
- Discovered
- Jan 20, 2023
- Materiality determined
- —
- Notification sent
- Jun 21, 2023
- Affected individuals
- 2
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified Office of the New Hampshire Attorney General
- Initial access
- phishing_link
Compliance
- Time to disclose
- 22 weeks(157 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.