HackingVulnerability ExploitZero-DayData ExfiltratedData EncryptedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
GlobalLogic Inc.
bd_dec39a710b99ff4e · schema v1 · pii pii-v1
Full breach record for GlobalLogic Inc. →GlobalLogic, Inc. notified the New Hampshire Attorney General of a data security incident involving a zero-day exploit in Oracle E-Business Suite. The threat actor gained access between July 10, 2025, and August 20, 2025, and exfiltrated data on October 9, 2025. The incident affected 41 New Hampshire residents, exposing personal information including names and government identifiers. GlobalLogic engaged third-party experts, notified law enforcement, applied patches, and began sending notifications on November 7, 2025.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_3b7a680e1152c555Montana State AGfiled 2025-11-07Candidate
- bd_65dfc85024b8a8caVermont State AGfiled 2025-11-07Verified
- bd_885a37a215c70796Maine State AGfiled 2025-11-07Verified
- bd_a5df6c1dce6582a5Indiana State AGfiled 2025-11-07Verified
Show 2 more filings ↓Show fewer ↑up to 5d gap
- bd_d7939b3465fbb557California State AGfiled 2025-11-07Verified
- bd_224aa7ea4992cd71Texas State AGfiled 2025-11-12(5d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/globallogic-20251107.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 7, 2025
- Raw hash
- 9b2f06cc95f7204ad5289e702c888aaf040dd30e98d83d4a47b0cb2bc4d1a51b
Reporting entity
- Name
- GlobalLogic Inc.norm: globallogic
Victim entity
- Name
- GlobalLogic Inc.norm: globallogic
Incident
- Discovered
- Oct 9, 2025
- Materiality determined
- —
- Notification sent
- Nov 7, 2025
- Affected individuals
- 41
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney General Consumer Protection Bureau
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 29 days(29 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.