Social EngineeringPhishingStolen CredentialsCustomer Data InvolvedPIIIDENTITY_BASICLowContained
Statewide Aquastore, Inc.
bd_d5feb3ada5b07bd1 · schema v1 · pii pii-v1
Full breach record for Statewide Aquastore, Inc. →Statewide Aquastore, Inc. notified New Hampshire residents of unauthorized access to an email account between Dec 15, 2023, and Mar 5, 2024. The breach likely involved phishing leading to credential compromise. Personal information of 3 NH residents was potentially accessed. Statewide engaged forensic investigators, notified law enforcement, and offered credit monitoring via Experian.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed3 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/statewide-aquastore-20240521.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 21, 2024
- Raw hash
- ca053d5387630f99ace1f78997795803db59eae5809056c265ce4c4cbcf2f846
Reporting entity
- Name
- Statewide Aquastore, Inc.norm: statewide aquastore
- Domain
- statewideaquastore.com
Victim entity
- Name
- Statewide Aquastore, Inc.norm: statewide aquastore
- Domain
- statewideaquastore.com
Incident
- Discovered
- Mar 5, 2024
- Materiality determined
- —
- Notification sent
- May 21, 2024
- Affected individuals
- 3
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Phishing
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- phishing_link
Compliance
- Time to disclose
- 11 weeks(77 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.