HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Bison State Bank
bd_d61fffe9af833628 · schema v1 · pii pii-v1
Full breach record for Bison State Bank →Bison State Bank notified the New Hampshire Attorney General of an unauthorized access to a single email account between April 17, 2025, and June 30, 2025. The incident affected one New Hampshire resident, whose full name, Social Security number, and credit card information were potentially accessed. The bank discovered the breach on January 6, 2026, contained the incident, engaged forensic experts, and mailed notifications to the affected individual on January 26, 2026, offering complimentary credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/bison-state-bank-20260209.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 9, 2026
- Raw hash
- b437672268d08e91884f0eef0beed8ca81852201b8dc5a56130454314a8cbdd8
Reporting entity
- Name
- MCDONALD HOPKINS LLCnorm: mcdonald hopkins
Victim entity
- Name
- Bison State Banknorm: bison state bank
Incident
- Discovered
- Jan 6, 2026
- Materiality determined
- —
- Notification sent
- Jan 26, 2026
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 5 weeks(34 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.