Sirius Federal
bd_a641d8dc75eb6cc6 · schema v1 · pii pii-v1
Full breach record for Sirius Federal →Sirius Federal, LLC reported a data breach to the New Hampshire Attorney General on January 31, 2024. Unauthorized access occurred between July 31 and August 2, 2023, via brute force attack on the company's VPN. The incident impacted 6 New Hampshire residents, exposing personal information including financial account and payment card data for a subset. The company engaged third-party experts, disabled compromised credentials, notified law enforcement, and offered 2 years of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jul 31, 2023
Begins
Aug 2, 2023
Discovered
Dec 20, 2023
Scope determined
Jan 31, 2024
Filed
vs. sector median
+7 wks slower
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Maine State AGbd_7875f0a074bf5b6e2024-01-31Verified by operator
- Massachusetts State AGbd_bd022fe35eafa7402024-01-31Verified
- Vermont State AGbd_579778adb1846cb62024-01-19 · +12dVerified
- Montana State AGbd_62d7ca0f719fa8a72024-01-19 · +12dCandidate
Show 1 more filing ↓Show fewer ↑up to 12d gap
- Indiana State AGbd_780c87eef21587532024-01-19 · +12dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing Jan 19 (VT), last Jan 31 (NH) — a 12-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.