Vertafore
bd_e05b9e1eb9958736 · schema v1 · pii pii-v1
Full breach record for Vertafore →Vertafore notified the New Hampshire Attorney General of a configuration error in its QQCatalyst insurance management platform. The error, existing between 2012 and December 2020, exposed personal data including names, addresses, birthdates, driver's license numbers, and potentially SSNs and financial account data. Discovered on November 30, 2020, the company fixed the error, engaged forensic investigators, and notified one New Hampshire resident on July 7, 2021, offering credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 1, 2012
Begins
Nov 30, 2020
Discovered
Jul 9, 2021
Filed
vs. sector median
+13 wks slower
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- South Carolina State AGbd_8c3393904c1de7c72021-07-08 · +1dVerified
- Montana State AGbd_0b6fb2d524526bb72021-06-16 · +23dCandidate
- Montana State AGbd_46b0579fff296ea12021-08-09 · +31dVerified
- New Hampshire State AGbd_b417a50418164b432021-09-23 · +76dVerified
Filing propagation · 5 filings · 3 states
View merged incident ↗Pattern: first filing Jun 16 (MT), last Sep 23 (NH) — a 99-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.