HackingCustomer Data InvolvedSupply Chain (3P Vendor)PIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumActive
KBF CPAs
bd_d2afa4d10b8c29b5 · schema v1 · pii pii-v1
Full breach record for KBF CPAs →KBF CPAs notified the New Hampshire Attorney General of a security incident in November 2022 involving unauthorized access to a third-party storage platform. The breach affected one New Hampshire resident's personal information, including name and Social Security number. KBF engaged cybersecurity professionals, determined the scope on June 6, 2023, and began notifying affected individuals on June 29, 2023, offering credit monitoring services.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/kbf-cpas-20230703.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 3, 2023
- Raw hash
- 2581136809d1611fe63e0f3ffc6ecccb987b4e08b26e8733c20bde6cfbb8bcf3
Reporting entity
- Name
- KBF CPAsnorm: kbf cpas
Victim entity
- Name
- KBF CPAsnorm: kbf cpas
Incident
- Discovered
- Nov 1, 2022
- Materiality determined
- Jun 6, 2023
- Notification sent
- Jun 29, 2023
- Affected individuals
- 1
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain CompromiseT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified Office of the Attorney General Consumer Protection Bureau
- Initial access
- supply_chain
Compliance
- Time to disclose
- 35 weeks(244 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.