HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Ahtna Incorporated
bd_f23a1a2a204c96b5 · schema v1 · pii pii-v1
Full breach record for Ahtna Incorporated →Ahtna, Inc. notified the New Hampshire Attorney General of a data event affecting 2 NH residents. Unauthorized access occurred between April 20 and June 1, 2025. Ahtna discovered the breach on July 28, 2025, contained the network, engaged outside investigators, and notified federal law enforcement. Affected data included names and SSN/TIN. Affected individuals received 12 months of credit monitoring via Experian.
Leak gap clock⏱ Leak >90d17 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 7 about the same incident.View merged incident
A leak claim by qilin about this victim predates this filing by 116 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_12ccee8c9159108cCalifornia State AGfiled 2025-11-21Verified
- bd_2ff3c11d1751fbb2Maine State AGfiled 2025-11-21Candidate
- bd_31c06274ced5bd37Indiana State AGfiled 2025-11-21Verified
- bd_90c6835deaec4751Vermont State AGfiled 2025-11-21Verified
Show 2 more filings ↓Show fewer ↑up to 91d gap
- bd_11bf1ab7ad30a689California State AGfiled 2026-01-20(60d gap)Verified
- bd_4e509ebc850ec1d9Texas State AGfiled 2026-02-20(91d gap)Verified by operator
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/ahtna-20251121.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 21, 2025
- Raw hash
- 3cf0e02453aaed70b57af9ac0114932f227b325b8a71ef13b23714ae17c91ffd
Reporting entity
- Name
- Mullen Coughlin LLCnorm: mullen coughlin
Victim entity
- Name
- Ahtna Incorporatednorm: ahtna
- Domain
- ahtna.com
Incident
- Discovered
- Jul 28, 2025
- Materiality determined
- —
- Notification sent
- Nov 21, 2025
- Affected individuals
- 2
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- Notified federal law enforcement regarding the eventProviding written notice of this event to relevant state and federal regulators, as necessary, and to the three major credit reporting agencies
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 17 weeks(116 days from discovery to filing)
- Compliance flags
- Leak >90d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.