MalwareRansomwareData ExfiltratedRansom DemandedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Crockett & Myers Associates
bd_aa657e824cca8329 · schema v1 · pii pii-v1
Full breach record for Crockett & Myers Associates →Crockett & Myers Associates experienced a ransomware attack starting November 8, 2022, discovered November 10, 2022. The incident resulted in unauthorized access to files containing names and Social Security numbers of 3 New Hampshire residents. The company engaged forensic specialists, notified federal law enforcement, and sent notices with 12 months of credit monitoring to affected individuals on February 15, 2023.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed3 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/crockett-myers-associates-20230221.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 21, 2023
- Raw hash
- ce48477b9e6bbb0088b8c41a7428cb7c6628a21ed49f147ecbc88ce96fe289c1
Reporting entity
- Name
- Crockett & Myers Associatesnorm: crockett myers associates
Victim entity
- Name
- Crockett & Myers Associatesnorm: crockett myers associates
Incident
- Discovered
- Nov 10, 2022
- Materiality determined
- Jan 15, 2023
- Notification sent
- Feb 15, 2023
- Affected individuals
- 3
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- reported this incident to federal law enforcement
Compliance
- Time to disclose
- 15 weeks(103 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.