HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Alera Group, Inc.
bd_d9430cde35cab839 · schema v1 · pii pii-v1
Full breach record for Alera Group, Inc. →Alera Group, Inc. filed a supplemental notice with the New Hampshire Attorney General on September 5, 2025, regarding a data breach occurring between July 19, 2024, and August 4, 2024. The incident involved unauthorized access resulting in the potential exfiltration of personal information, including names and government identifiers. Alera Group notified approximately one New Hampshire resident and provided 24 months of complimentary credit monitoring through IDX.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_1ed3f272d914f341New Hampshire State AGfiled 2025-08-28(8d gap)Verified
- bd_e7ea8ca0d160b7f9South Carolina State AGfiled 2025-07-30(37d gap)Verified
- bd_43a2a7cbde02dff7New Hampshire State AGfiled 2025-07-29(38d gap)Verified
- bd_69b4192ea6eb9f94California State AGfiled 2025-07-29(38d gap)Candidate
Show 2 more filings ↓Show fewer ↑up to 84d gap
- bd_ca0bc76a00a8880aDelaware State AGfiled 2025-07-29(38d gap)Verified
- bd_145c82e3ce4b31b0California State AGfiled 2025-06-13(84d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/alera-group-20250905.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 5, 2025
- Raw hash
- 1f5c0bd1529325c718efea6087ec0ceedc9b69e6bf6caeea4e819569be4d4745
Reporting entity
- Name
- Mullen Coughlin LLCnorm: mullen coughlin
Victim entity
- Name
- Alera Group, Inc.norm: alera group
- Domain
- aleragroup.com
Incident
- Discovered
- Aug 1, 2024
- Materiality determined
- —
- Notification sent
- Sep 5, 2025
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1119 Automated Collection
- Threat actor
- External
Compliance
- Time to disclose
- 13 months(400 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.