HackingStolen CredentialsCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTMediumContained
CENTRAL BANK
bd_ab52fad5322dc7c8 · schema v1 · pii pii-v1
Full breach record for CENTRAL BANK →Central Bank notified the New Hampshire Attorney General of a security incident involving unauthorized access to server files on December 27, 2021. The breach affected 18 New Hampshire residents, exposing names, Social Security numbers, and account numbers. Central Bank contained the incident, engaged outside cybersecurity and law enforcement, and began mailing notifications on March 8, 2022, offering one year of Kroll identity monitoring services.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_0dfb21d970bf0ff1Montana State AGfiled 2022-03-08Candidate
- bd_a9865f0b5abc45f0Maine State AGfiled 2022-03-08Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/central-bank-20220308.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 8, 2022
- Raw hash
- b386cdabf9279b8a48aa6087b6084c3a9d5ccb7b2bd959d1aa07c4289c5bf0c0
Reporting entity
- Name
- CENTRAL BANKnorm: central bank
Victim entity
- Name
- CENTRAL BANKnorm: central bank
Incident
- Discovered
- Feb 15, 2022
- Materiality determined
- —
- Notification sent
- Mar 8, 2022
- Affected individuals
- 18
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified New Hampshire Attorney General
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 21 days(21 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.