HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Gaia Herbs
bd_eba844efd289ddd8 · schema v1 · pii pii-v1
Full breach record for Gaia Herbs →Gaia Herbs, Inc. notified the New Hampshire Attorney General of a data security incident occurring between March 7-14, 2024. Unauthorized access resulted in the exposure of personal information for two New Hampshire residents. Gaia mailed notifications on May 24, 2024, and offered Experian credit monitoring services.
Leak gap clock⏱ Leak >30d
⚠ no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed2 affectedView incident
A leak claim by blacksuit about this victim predates this filing by 51 days.View originating leak claim
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/gaia-herbs-20240524.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 24, 2024
- Raw hash
- 3a9139012a3b0c255bb1b12061d3f0ca3671616d77c4e842d93d24f66ad1a9ee
Reporting entity
- Name
- Gaia Herbsnorm: gaia herbs
- Domain
- gaiaherbs.com
Victim entity
- Name
- Gaia Herbsnorm: gaia herbs
- Domain
- gaiaherbs.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- May 24, 2024
- Affected individuals
- 2
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified Attorney General John Formella
- Initial access
- valid_credentials
Compliance
- Compliance flags
- Leak >30d
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.