Social EngineeringPhishingCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Limestone Bank (now Peoples Bank)
bd_c83686cdeac36a3f · schema v1 · pii pii-v1
Full breach record for Limestone Bank (now Peoples Bank) →Limestone Bank (now Peoples Bank) notified the New Hampshire Attorney General of a cybersecurity incident involving unauthorized access to an employee email account. The breach occurred between November 21, 2022, and March 23, 2023. The bank determined on August 16, 2023, that personal information of 26 New Hampshire residents was compromised. Notifications were mailed on September 15, 2023, offering one year of credit monitoring.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_205d103bb61afbcdMontana State AGfiled 2023-09-15Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/limestone-bank-peoples-bank-20230915.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 15, 2023
- Raw hash
- c8e2e551e54af51426e94f3621cd00864f10e8d83d7c8b52583f63050a7cc1bd
Reporting entity
- Name
- Limestone Bank (now Peoples Bank)norm: limestone bank now peoples bank
Victim entity
- Name
- Limestone Bank (now Peoples Bank)norm: limestone bank now peoples bank
Incident
- Discovered
- Aug 16, 2023
- Materiality determined
- —
- Notification sent
- Sep 15, 2023
- Affected individuals
- 26
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified Attorney General John Formella
- Initial access
- phishing_link
Compliance
- Time to disclose
- 4 weeks(30 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.