HackingStolen CredentialsCustomer Data InvolvedPIILowContained
Smart ERP Solutions
bd_e1b0bab6229b5bd0 · schema v1 · pii pii-v1
Full breach record for Smart ERP Solutions →Smart ERP Solutions, Inc. notified consumers of a cybersecurity incident occurring between July 3 and July 13, 2024. Unauthorized access to personal data was discovered on February 11, 2025. The company engaged external cybersecurity professionals and is offering 12 months of credit monitoring. The specific data types affected were redacted in the provided notice.
Leak gap clock✗ Leak >180d28 days discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 3 about the same incident.View merged incident
A leak claim by ransomhub about this victim predates this filing by 241 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_9622e391e544b65bMaryland State AGfiled 2025-03-11Verified
- bd_db80fa8a4d71251bCalifornia State AGfiled 2025-03-11Candidate
Source provenance
- Source URL
- https://ago.vermont.gov/document/2025-03-11-smart-erp-solutions-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 11, 2025
- Raw hash
- f4f865914e7949c068a41aabcc9b1d8ed9bbbd2c9526cb9538882f59fc85bdbc
Reporting entity
- Name
- Smart ERP Solutionsnorm: smart erp solutions
- Domain
- smarterp.com
Victim entity
- Name
- Smart ERP Solutionsnorm: smart erp solutions
- Domain
- smarterp.com
Incident
- Discovered
- Feb 11, 2025
- Materiality determined
- Mar 11, 2025
- Notification sent
- Mar 11, 2025
- Affected individuals
- Not disclosed
- Data types
- PII
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Filed notice with the Office of the Vermont Attorney General
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 28 days(28 days from discovery to filing)
- Compliance flags
- Leak >180dVT AG >14 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.