MalwareRansomwareData ExfiltratedData EncryptedRansom DemandedIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICIDENTITY_BASICMediumContained
Peter Brasseler Holdings
bd_a55f97f4e13ec823 · schema v1 · pii pii-v1
Full breach record for Peter Brasseler Holdings →Peter Brasseler Holdings, LLC notified consumers of a ransomware attack occurring in summer 2022. The incident resulted in the unauthorized access and exfiltration of files containing government IDs (SSNs, driver's licenses), financial account numbers, medical/insurance info, and dates of birth. The company engaged forensic investigators, secured systems, and contacted law enforcement. Affected individuals were offered 24 months of Experian IdentityWorks monitoring. No evidence of public data release or identity theft was found at the time of notification.
Vermont clock✗ VT AG >45 bday13 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_a7df462dac47ceecCalifornia State AGfiled 2023-03-31Verified by operator
- bd_8c9b6db493fd1f46Maine State AGfiled 2023-03-30(1d gap)Candidate
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-03-31-peter-brasseler-holdings-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 31, 2023
- Raw hash
- c7f22557bf9301118922b76aa8f931a525c7831996652d8a769ba633b186abd9
Reporting entity
- Name
- Peter Brasseler Holdingsnorm: peter brasseler
Victim entity
- Name
- Peter Brasseler Holdingsnorm: peter brasseler
Incident
- Discovered
- Jan 1, 2023
- Materiality determined
- —
- Notification sent
- Mar 31, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICIDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- contacted law enforcement
Compliance
- Time to disclose
- 13 weeks(89 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.