Social EngineeringPhishingCustomer Data InvolvedData ExfiltratedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Open Arms Care Corporation
bd_b1eb5cea42f69921 · schema v1 · pii pii-v1
Full breach record for Open Arms Care Corporation →Open Arms Care Corporation (OAC) notified the New Hampshire Attorney General of a data security incident involving unauthorized access to an email account. The breach occurred between June and August 2025, discovered in August 2025. Three New Hampshire residents were affected, with data including names, SSNs, and driver's license information. OAC offered 12 months of credit monitoring and secured its email environment.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_a7cb682efc90cda6HHS OCRfiled 2026-06-11(4d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/open-arms-care-corporation-20260615.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 15, 2026
- Raw hash
- 41a2904a93fcaa3bbf6c927ee98ed8117f524354bee458e5313ff619b9dfa984
Reporting entity
- Name
- Open Arms Care Corporationnorm: open arms care
Victim entity
- Name
- Open Arms Care Corporationnorm: open arms care
Incident
- Discovered
- Aug 1, 2025
- Materiality determined
- —
- Notification sent
- Jun 9, 2026
- Affected individuals
- 3
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- ExternalFinancial
- Initial access
- phishing_link
Compliance
- Time to disclose
- 45 weeks(318 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.