Social EngineeringPhishingStolen CredentialsCustomer Data InvolvedMulti-Stage ChainPIIIDENTITY_BASICLowContained
Cornerstone Bank
bd_e70bac0b80922c9b · schema v1 · pii pii-v1
Full breach record for Cornerstone Bank →Cornerstone Bank notified the NH AG of a phishing incident discovered July 10, 2024, affecting employee email accounts. Unauthorized access to a small number of accounts exposed PII of 6 New Hampshire residents. The bank engaged forensic specialists, secured systems, reported to federal law enforcement, and sent notices on Oct 31, 2024, offering credit monitoring.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_a1a155190343bd40Montana State AGfiled 2024-11-05(1d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/cornerstone-bank-20241104.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 4, 2024
- Raw hash
- 81d30f187b675b1a644122c77e8436ecee1519bd23755491692c162add1bcb35
Reporting entity
- Name
- Cornerstone Banknorm: cornerstone bank
Victim entity
- Name
- Cornerstone Banknorm: cornerstone bank
Incident
- Discovered
- Jul 10, 2024
- Materiality determined
- Sep 24, 2024
- Notification sent
- Oct 31, 2024
- Affected individuals
- 6
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Office of the Attorney General
- Initial access
- phishing_link
Compliance
- Time to disclose
- 17 weeks(117 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.