HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
North Carolina Board of Cosmetic Art Examiners
bd_bf66e8a2a2c76dbf · schema v1 · pii pii-v1
Full breach record for North Carolina Board of Cosmetic Art Examiners →North Carolina Board of Cosmetic Art Examiners notified NH AG of unauthorized access to email accounts between Oct 31 and Nov 27, 2024. Discovered Nov 27, 2024. Name and SSN of 4 NH residents affected. Credit monitoring offered. Incident contained.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_6e861a1c943467afIndiana State AGfiled 2025-07-08Verified
- bd_e5387780961f5760Maine State AGfiled 2025-07-08Verified
- bd_7157d0b87aafe27bVermont State AGfiled 2025-07-07(1d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/north-carolina-board-cosmetic-art-examiners-20250708.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 8, 2025
- Raw hash
- dd6b3418612a4f6a21f2375708beee3c6153c8a1882ad6758a013ba8ba4b064d
Reporting entity
- Name
- North Carolina Board of Cosmetic Art Examinersnorm: north carolina board of cosmetic art examiners
Victim entity
- Name
- North Carolina Board of Cosmetic Art Examinersnorm: north carolina board of cosmetic art examiners
Incident
- Discovered
- Nov 27, 2024
- Materiality determined
- Jun 17, 2025
- Notification sent
- Jul 8, 2025
- Affected individuals
- 4
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Providing written notice of this incident to relevant state regulators
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 32 weeks(223 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.