First Advantage Corporation
bd_aeea61f037e62f33 · schema v1 · pii pii-v1
Full breach record for First Advantage Corporation →First Advantage Corporation filed a supplemental notice with the New Hampshire Attorney General regarding a cybersecurity incident initially reported on May 28, 2026. The incident involved unauthorized access via phishing to an employee's account on or about November 13, 2025, resulting in the download of email contents. The supplemental filing identifies 22 additional New Hampshire residents affected. Data types include names and variable PII elements. First Advantage disabled the account, offered 24 months of credit monitoring via TransUnion, and established a call center.
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- bd_70c9415659c8f823Texas State AGfiled 2026-06-25(4d gap)Candidate
- bd_4082b19584e92d01Vermont State AGfiled 2026-06-24(5d gap)Verified
- bd_ad4377b91320f038California State AGfiled 2026-06-23(6d gap)Verified
- bd_f38f341da505889bTexas State AGfiled 2026-06-09(20d gap)Verified
Show 6 more filings ↓Show fewer ↑up to 69d gap
- bd_a5c639bb7f322511Texas State AGfiled 2026-07-23(24d gap)Verified
- bd_15d448d2bfc77384New Hampshire State AGfiled 2026-06-04(25d gap)Verified
- bd_8e533f2a45bfae75Texas State AGfiled 2026-05-29(31d gap)Verified
- bd_3ae1f56aabc019e4Massachusetts State AGfiled 2026-05-01(59d gap)Verified
- bd_3193cebaf393d541Indiana State AGfiled 2026-04-21(69d gap)Verified
- bd_fbc21554fe3508b8Montana State AGfiled 2026-04-21(69d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/first-advantage-20260629.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 29, 2026
- Raw hash
- 80ea3609b2c3040de85db5bd816746c5c40b960ef0484642103092bb0a153fc3
Reporting entity
- Name
- First Advantage Corporationnorm: first advantage
Victim entity
- Name
- First Advantage Corporationnorm: first advantage
Incident
- Discovered
- Nov 17, 2025
- Materiality determined
- —
- Notification sent
- May 28, 2026
- Affected individuals
- 22
- Data types
- IDENTITY_BASIC
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- External
- Initial access
- phishing_link
Compliance
- Time to disclose
- 32 weeks(224 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.