HackingVulnerability ExploitData ExfiltratedCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Advantage Gold
bd_e831c4d2bbadd0fa · schema v1 · pii pii-v1
Full breach record for Advantage Gold →Advantage Gold notified New Hampshire regulators of a cybersecurity incident affecting approximately 35 state residents. The breach involved unauthorized access to networks via a vulnerability in third-party firewall software exploited in Q3-Q4 2025. Compromised data included names, addresses, SSNs, and custodian account numbers. The company engaged third-party experts, secured systems, and provided 24 months of credit monitoring. Notification to individuals was sent on March 27, 2026.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_cde4ae1eb8212278Texas State AGfiled 2026-03-30Verified
- bd_169b81ebe56ee428Maine State AGfiled 2026-03-29(1d gap)Candidate
- bd_3b1861f37409e091Vermont State AGfiled 2026-03-29(1d gap)Verified
- bd_6e5ed94e189888b5California State AGfiled 2026-03-27(3d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 3d gap
- bd_b4195eb2e9c942e9Indiana State AGfiled 2026-03-27(3d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/advantage-gold-20260330.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 30, 2026
- Raw hash
- 5dad9420c316e33eef045ddcbf66550c68dc1b1cf561019ddf2649a2245bfebc
Reporting entity
- Name
- Advantage Goldnorm: advantage gold
- Domain
- advantagegold.com
Victim entity
- Name
- Advantage Goldnorm: advantage gold
- Domain
- advantagegold.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Mar 27, 2026
- Affected individuals
- 35
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified federal law enforcement and are cooperating with any related investigation
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.