Phillips Exeter Academy
bd_bcff3057e50dbd66 · schema v1 · pii pii-v1
Full breach record for Phillips Exeter Academy →Phillips Academy notified the New Hampshire Attorney General of a data security incident involving unauthorized access to a single employee email account between September 30, 2021, and November 22, 2021. The unauthorized party intermittently accessed the account, but it was undetermined if emails or attachments were viewed. A review identified one New Hampshire resident whose name and Social Security number were contained in the mailbox. Phillips Academy mailed a notification letter on May 5, 2022, and offered the resident a complimentary one-year Experian IdentityWorks membership.
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/phillips-academy-20220505.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 5, 2022
- Raw hash
- 70fe5aebca0deb883b9493ede464aab17f6a5e7d52e6699d48582a16278d5d63
Reporting entity
- Name
- Phillips Exeter Academynorm: phillips exeter academy
Victim entity
- Name
- Phillips Exeter Academynorm: phillips exeter academy
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- May 5, 2022
- Affected individuals
- 1
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.