DisclosureLens
MalwareProfessional ServicesProfessional ServicesRansomwareData ExfiltratedCustomer Data InvolvedIdentity (basic)Government IDMediumContained

Boulos Asset Mgmt

bd_d0da4760cd70ca01 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Mar 30, 2021

Filed

Jul 9, 2021

To disclose

14 weeks

Affected

3state residents only

Linked

2 filings

Confidence

67%
Full breach record for Boulos Asset Mgmt

The Boulos Company notified the New Hampshire Attorney General on July 9, 2021, of a ransomware incident detected on March 30, 2021. An unauthorized party attempted to lock the company out of its network for financial payment. The company shut off network access and engaged forensic investigators. The investigation determined that the full name, mailing address, and Social Security number of three New Hampshire residents may have been compromised. No evidence of data misuse was found. The company notified the affected individuals on June 29, 2021, and offered 18 months of credit monitoring through Kroll. Remediation included MFA, updated security programs, and secure file transfer systems.

Incident timeline

discovery → filing · 14 weeks / 101 days

Mar 30, 2021

Discovered

Jul 9, 2021

Filed

vs. sector median

3 wks faster

This filing is one of 2 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings · 2 states

View merged incident ↗
New Hampshire State AG+2d · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.