FINASTRA USA CORPORATION
bd_d132e026415d4128 · schema v1 · pii pii-v1
Full breach record for FINASTRA USA CORPORATION →Finastra notified the New Hampshire Attorney General of a cybersecurity incident involving its Secure File Transfer Platform (Aspera). An unauthorized third party accessed the platform between October 31 and November 8, 2024, obtaining files containing names and Social Security numbers affecting 281 NH residents. Finastra discovered the incident on November 7, 2024, engaged law enforcement (FBI) and forensic investigators, and is offering 24 months of credit monitoring. The risk to individuals is assessed as low.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 31, 2024
Begins
Nov 7, 2024
Discovered
Jul 3, 2025
Filed
vs. sector median
+15 wks slower
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Vermont State AGbd_4ed6dc4c5a8466022025-07-03Verified
- Montana State AGbd_55c58c38375cc5db2025-07-03Candidate
- South Carolina State AGbd_afaf827ed8c3c9462025-07-03Verified
- Illinois State AGbd_71821d2cfd44936d2025-07-01 · +2dVerified
Show 1 more filing ↓Show fewer ↑up to 7d gap
- Massachusetts State AGbd_b50b3ac891962bd92025-06-26 · +7dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing Jun 26 (MA), last Jul 3 (NH) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.