HackingPhishingStolen CredentialsData ExfiltratedTargetedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumActive
Mehri & Skalet, PLLC
bd_ccafdfebebbf4621 · schema v1 · pii pii-v1
Full breach record for Mehri & Skalet, PLLC →Mehri & Skalet PLLC notified the NH AG of a data event affecting 35 NH residents. Unauthorized access to an employee email account occurred on Dec 17, 2024, discovered May 20, 2025. Data included names, SSNs, and financial info. Notifications began July 14, 2025. Law enforcement notified; credit monitoring offered.
This filing is one of 12 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- bd_3954de5decc55d14Indiana State AGfiled 2025-10-24Verified
- bd_686937ac8f09c1a7Maine State AGfiled 2025-10-24Candidate
- bd_31c871a13a7830fcTexas State AGfiled 2025-10-27(3d gap)Verified by operator
- bd_1719c1d7fddc8b28New Hampshire State AGfiled 2025-11-19(26d gap)Verified
Show 6 more filings ↓Show fewer ↑up to 28d gap
- bd_5df6d7b3c0b9ba81California State AGfiled 2025-11-19(26d gap)Verified
- bd_b406afafefa33a19Maine State AGfiled 2025-11-19(26d gap)Verified
- bd_cb3366655b70e060Montana State AGfiled 2025-11-19(26d gap)Verified by operator
- bd_cf0ce5346c65cf8dWashington State AGfiled 2025-11-19(26d gap)Verified
- bd_f6eee11cd806a2d8Vermont State AGfiled 2025-11-19(26d gap)Verified
- bd_c2275bbda62bc31bTexas State AGfiled 2025-11-21(28d gap)Verified by operator
Showing first 10 of 11 linked disclosures.
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/mehri-skalet-20251024.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 24, 2025
- Raw hash
- 754cf9d88dac06db45f410bac824b284e108e442fb54af680baa576880ffa2d6
Reporting entity
- Name
- Mullen Coughlin LLCnorm: mullen coughlin
Victim entity
- Name
- Mehri & Skalet, PLLCnorm: mehri skalet
- Domain
- findjustice.com
Incident
- Discovered
- May 20, 2025
- Materiality determined
- —
- Notification sent
- Jul 14, 2025
- Affected individuals
- 35
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified federal law enforcement regarding the event
- Initial access
- phishing_link
Compliance
- Time to disclose
- 22 weeks(157 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.