CHP 11-99 Foundation
bd_b56890b11d4ca9ba · schema v1 · pii pii-v1
Full breach record for CHP 11-99 Foundation →2 incidents on fileCHP 11-99 Foundation notified Massachusetts residents of a data security incident involving unauthorized access to a staff member's email account. The attacker accessed email folders containing membership applications, merchandise purchases, and payment forms, which included bank/credit card information, driver's license numbers, names, and addresses. The attacker subsequently used the compromised email to attempt phishing against an external service provider. The investigation is ongoing. The organization implemented MFA, changed passwords, and reviewed security protocols.
J jump to incidentP pin to compareR raw source
Incident timeline — partial
? — ?
Breach window unknown
Feb 3, 2026
Filed
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- California State AGbd_abf1655a014ba0332026-01-23 · +11dCandidate
- New Hampshire State AGbd_8968a5af3b4076c42026-01-20 · +14dVerified
Filing propagation · 3 filings · 3 states
View merged incident ↗Pattern: first filing Jan 20 (NH), last Feb 3 (MA) — a 14-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.