HackingStolen CredentialsCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTHEALTH_BASICMediumContained
Bath Fitter Distributing Inc.
bd_fb2b6b72c5496935 · schema v1 · pii pii-v1
Full breach record for Bath Fitter Distributing Inc. →Bath Fitter (subsidiary of Bath Fitter Manufacturing Inc, owned by Bath Fitter Holdings Inc) disclosed a data breach involving unauthorized access by a criminal actor. Impacted data includes SSNs, DOBs, financial account numbers, health/safety info, and employment records. The company engaged a cybersecurity firm, implemented MFA, enhanced endpoint protection, and improved network segmentation. 24 months of credit monitoring via Epiq was offered. No specific count of affected individuals was disclosed.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://www.mass.gov/doc/2026-1150-bath-fitter-distributing-inc/download
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 1, 2026
- Raw hash
- d5db5bbf4ab166de4b27850039c1588e9b8e10a911ab9ae03b13019e08d2ae1d
Reporting entity
- Name
- Bath Fitter Distributing Inc.norm: bath fitter distributing
Victim entity
- Name
- Bath Fitter Distributing Inc.norm: bath fitter distributing
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.