HackingStolen CredentialsNation State SuspectedCustomer Data InvolvedData ExfiltratedPIIIDENTITY_BASICLowContained
HEWLETT PACKARD ENTERPRISE COMPANY
bd_edabcc46d1f65c2b · schema v1 · pii pii-v1
Full breach record for HEWLETT PACKARD ENTERPRISE COMPANY →Hewlett Packard Enterprise Company (HPE) notified the New Hampshire Attorney General of a data event affecting 6 NH residents. On December 12, 2023, a suspected nation-state actor gained unauthorized access to HPE's cloud-based email environment. HPE engaged external experts to contain and remediate the incident. Personal information was potentially accessed. HPE began notifying affected individuals on January 29, 2025, offering credit monitoring services.
Leak gap clock✗ Leak >180d14 months discovery → filing
This filing is one of 3 about the same incident.View merged incident
A leak claim by meow about this victim predates this filing by 204 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_1bed9a57dd205c27Leak Sitemeowfiled 2024-07-16(204d gap)Verified by operator
Regulatory filings (1) · sorted by filing gap
- bd_ea1b03ceb303c159Maryland State AGfiled 2025-02-05Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/hewlett-packard-enterprise-20250205.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 5, 2025
- Raw hash
- b1d0c04f4b479ad7969f49acf166bdfd8e800e1cfe5cee7f1e30cc345b4a3172
Reporting entity
- Name
- HEWLETT PACKARD ENTERPRISE COMPANYnorm: hewlett packard enterprise
- Domain
- hpe.com
Victim entity
- Name
- HEWLETT PACKARD ENTERPRISE COMPANYnorm: hewlett packard enterprise
- Domain
- hpe.com
Incident
- Discovered
- Dec 12, 2023
- Materiality determined
- —
- Notification sent
- Jan 29, 2025
- Affected individuals
- 6
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalEspionage
- Regulator citations
- Notified New Hampshire Attorney General
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 14 months(421 days from discovery to filing)
- Compliance flags
- Leak >180d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.