MalwareRansomwareData ExfiltratedData EncryptedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
A.L. Purinton Corporation
bd_ca722e8b1dd1681a · schema v1 · pii pii-v1
Full breach record for A.L. Purinton Corporation →A.L. Purinton Corporation, a security service provider, disclosed a ransomware incident affecting 3 New Hampshire residents. Unauthorized access occurred on February 17, 2026, resulting in the exfiltration of names, Social Security numbers, and driver's license numbers. Purinton notified the NH Attorney General on May 18, 2026, and began notifying affected individuals on May 15, 2026. Remediation included MFA implementation, password resets, and engaging forensic specialists.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed3 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/a-l-purinton-20260522.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 22, 2026
- Raw hash
- c07f85bb19009dff7f12f9382f26fd464a7ce034c04d59479b188b6afbae49f4
Reporting entity
- Name
- A.L. Purinton Corporationnorm: al purinton
- Domain
- purinton.com
Victim entity
- Name
- A.L. Purinton Corporationnorm: al purinton
- Domain
- purinton.com
Incident
- Discovered
- Feb 17, 2026
- Materiality determined
- —
- Notification sent
- May 15, 2026
- Affected individuals
- 3
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Reporting to other state regulatory offices where required
Compliance
- Time to disclose
- 13 weeks(94 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.