HackingPhishingStolen CredentialsCapture Stored DataData ExfiltratedCustomer Data InvolvedMulti-Stage ChainPIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Tristar Group
bd_e4c57a2c71196cb5 · schema v1 · pii pii-v1
Full breach record for Tristar Group →TRISTAR Insurance Group notified New Hampshire residents of a data breach involving unauthorized access to its email environment and systems. The incident, discovered on November 10, 2022, involved phishing leading to credential compromise and data exfiltration. TRISTAR engaged forensic specialists, notified law enforcement, and offered credit monitoring to affected individuals.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_a90284032b05fe16California State AGfiled 2024-02-01Verified
- bd_d4f88d85def79680Indiana State AGfiled 2024-02-01Verified
- bd_c6053076ac9ab7e1Montana State AGfiled 2024-01-19(13d gap)Verified
- bd_9449f03ad3d6982fNew Hampshire State AGfiled 2024-03-18(46d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 52d gap
- bd_38cc11377e6d2c0fCalifornia State AGfiled 2023-12-11(52d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/tristar-insurance-group-20240201.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 1, 2024
- Raw hash
- 373d23d1486c7a22b0b886a692d0b58690c57e9919ab8da6d7115e2fdf2841eb
Reporting entity
- Name
- Tristar Groupnorm: tristar group
- Domain
- tristargroup.net
Victim entity
- Name
- Tristar Groupnorm: tristar group
- Domain
- tristargroup.net
Incident
- Discovered
- Nov 10, 2022
- Materiality determined
- —
- Notification sent
- Feb 1, 2024
- Affected individuals
- 27
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid AccountsT1114 Email CollectionT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified federal law enforcement regarding the eventProviding written notice of this incident to relevant state regulators, as necessary
- Initial access
- phishing_link
Compliance
- Time to disclose
- 15 months(448 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.