DisclosureLens
HackingEducationEducationCustomer Data InvolvedPIIIdentity (basic)Government IDMediumContained

Concord Public Schools and Concord-Carlisle Regional School District

bd_c141f40979a4d5f5 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Apr 29, 2024

Filed

May 15, 2024

To disclose

16 days

Affected

16state residents only

Linked

6 filings

Confidence

67%
Full breach record for Concord Public Schools and Concord-Carlisle Regional School District

Concord Public Schools and Concord-Carlisle Regional School District reported a cybersecurity incident discovered on April 29, 2024, where an unauthorized actor accessed network files. The breach potentially affected 16 New Hampshire residents, exposing PII including names, addresses, and SSNs. The district engaged a cybersecurity firm, secured the network, and offered credit monitoring services to affected individuals.

Incident timeline

discovery → filing · 16 days

Apr 29, 2024

Discovered

May 15, 2024

Filed

vs. sector median

6 wks faster

This filing is one of 6 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (5) · sorted by filing gap

Show 1 more filingup to 23d gap

Filing propagation · 6 filings · 4 states

View merged incident ↗
Maine State AGMay 15 · first
Massachusetts State AGMay 15 · first
New Hampshire State AGMay 15 · first · this page

Pattern: first filing May 15 (ME), last Jun 7 (NH) — a 23-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.