Kestra Financial Services
bd_b1e360adc4b06500 · schema v1 · pii pii-v1
Full breach record for Kestra Financial Services →5 incidents on fileKestra Financial, Inc. notified the NH Attorney General of a data breach discovered on October 21, 2024. Employees fell victim to a phishing email that redirected them to a fraudulent Microsoft login page, leading to credential theft and unauthorized access to email accounts. Three files were exfiltrated, one containing PII of one New Hampshire resident. The company revoked sessions, reset passwords, and offered identity monitoring via Kroll.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 21, 2024
Begins
Oct 21, 2024
Discovered
Oct 31, 2024
Filed
vs. sector median
7 wks faster
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- Maine State AGbd_f0189159e50479902024-10-31Candidate
Filing propagation · 2 filings · 2 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.