HackingMisconfigurationCustomer Data InvolvedData ExfiltratedPIIIDENTITY_BASICLowContained
EXOSTAR LLC
bd_f4f9a86b3912b16e · schema v1 · pii pii-v1
Full breach record for EXOSTAR LLC →Exostar LLC notified the NH AG of a data event involving unauthorized access to a third-party system. Unauthorized actors exploited a configuration issue to access and copy files between Oct 2023 and Apr 2024. One NH resident was affected. Exostar provided credit monitoring and identity theft protection services.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_a811c456ab653556Indiana State AGfiled 2024-12-23Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/exostar-20241223.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 23, 2024
- Raw hash
- 553f87334eb6a2d3a92d2bab30794e4a5b63ff11b4260d906e0f4567e694a4da
Reporting entity
- Name
- EXOSTAR LLCnorm: exostar
Victim entity
- Name
- EXOSTAR LLCnorm: exostar
Incident
- Discovered
- Oct 1, 2023
- Materiality determined
- Nov 22, 2024
- Notification sent
- Dec 23, 2024
- Affected individuals
- 1
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
Compliance
- Time to disclose
- 15 months(449 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.