MalwareRansomwareRansom DemandedData EncryptedData ExfiltratedEmployee Data InvolvedCustomer Data InvolvedTargetedDelayed DiscoveryPIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Hanon Systems USA, LLC
bd_d71e46bd73b17080 · schema v1 · pii pii-v1
Full breach record for Hanon Systems USA, LLC →On July 21, 2024, Hanon Systems USA, LLC experienced a ransomware event in which a third-party threat actor accessed certain systems and held data under threat of ransom demand. Affected information included names, contact information, and Social Security Numbers of current and former employees. One Maine resident was among the 1,205 total individuals affected. Consumer notification was sent on September 4, 2024. Equifax 1B Gold credit monitoring was offered for 12 months.
Maine clockDiscovered Jul 21, 2024 → Filed with AG Sep 4, 202445d ⏱ ME AG >30d6 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_82f9c6d144eca6a8Montana State AGfiled 2024-09-04Candidate
Source provenance
- Source URL
- https://www.maine.gov/agviewer/content/ag/985235c7-cb95-4be2-8792-a1252b4f8318/a3402548-b6b4-4fc9-a09f-e6ff53827115.html
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 4, 2024
- Raw hash
- 0c9b55440d34400f8840744f98f5168cf305be7c75237d3238a7e767b904ffb9
Reporting entity
- Name
- Hanon Systems USA, LLCnorm: hanon systems usa
- Industry
- Other Commercial
Victim entity
- Name
- Hanon Systems USA, LLCnorm: hanon systems usa
- Industry
- Other Commercial
Incident
- Discovered
- Jul 21, 2024
- Materiality determined
- —
- Notification sent
- Sep 4, 2024
- Affected individuals
- 1
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid Accounts
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 6 weeks(45 days from discovery to filing)
- Compliance flags
- ME AG >30d · 45d
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
- Clock breakdown
Statute Window Elapsed Threshold Status Maine Discovered: Jul 21, 2024→ Filed with AG: Sep 4, 202445d 30 days (soft) ME AG >30d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.