HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Joy Rockwell Ent., Inc
bd_a9999982f4fefefb · schema v1 · pii pii-v1
Full breach record for Joy Rockwell Ent., Inc →Joy Rockwell Ent., Inc. dba PostcardMania notified the New Hampshire Attorney General of a data security incident discovered on October 27, 2024. An unauthorized individual took files from the network containing personal information of one NH resident. The company engaged cybersecurity experts, notified the FBI, and offered Equifax identity protection services.
Leak gap clock⏱ Leak >30d5 weeks discovery → filing
This filing is one of 3 about the same incident.View merged incident
A leak claim by play about this victim predates this filing by 42 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_2253413f51ca31e6Leak Siteplayfiled 2024-10-21(42d gap)Verified
Regulatory filings (1) · sorted by filing gap
- bd_f50c8ac52a294343Maine State AGfiled 2024-12-02Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/joy-rockwell-postcardmania-20241202.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 2, 2024
- Raw hash
- 917cb5dccc2eacc20409bec79235b06b2d4176b63ba29dfcabdc840371692c61
Reporting entity
- Name
- Joy Rockwell Ent., Incnorm: joy rockwell ent
- Domain
- postcardmania.com
Victim entity
- Name
- Joy Rockwell Ent., Incnorm: joy rockwell ent
- Domain
- postcardmania.com
Incident
- Discovered
- Oct 27, 2024
- Materiality determined
- Nov 4, 2024
- Notification sent
- Dec 2, 2024
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified the Federal Bureau of Investigation
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 5 weeks(36 days from discovery to filing)
- Compliance flags
- Leak >30d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.