SM ENERGY COMPANY
bd_c3a672606a5d8503 · schema v1 · pii pii-v1
Full breach record for SM ENERGY COMPANY →SM Energy Company notified the NH Attorney General of a cybersecurity incident on May 15, 2026, where an unauthorized party accessed systems via a compromised contractor account. Approximately 15 New Hampshire residents were affected, with exposure of name, address, email, phone, and SSN/TIN. The company contained the access, notified law enforcement, and offered two years of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
May 15, 2026
Begins
Aug 6, 2026
Filed
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Vermont State AGbd_01ba18dbedc8a6cb2026-07-31 · +6dCandidate
- Texas State AGbd_2563ed6edafee2ed2026-07-31 · +6dVerified
- Massachusetts State AGbd_9746211c4cb6ac682026-07-31 · +6dVerified
- Oregon State AGbd_1bc0c791f5e8ac232026-07-30 · +7dVerified
Show 1 more filing ↓Show fewer ↑up to 7d gap
- California State AGbd_7ae4a38d57c9220d2026-07-30 · +7dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing Jul 30 (OR), last Aug 6 (NH) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.