New Hampshire Retirement System
ent_019fcc5d4e4297379d7951ed9390902f
Disclosures
2
State AG · 1 jurisdiction
Multi-filing incidents
—
no multi-filing incident in sample
Max affected reported
45
nationwide · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- New Hampshire Retirement System
- Normalized
- new hampshire retirement system— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- L0216SOWY30921M3DB58
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- New Hampshire State AGas victim2021-10-21
New Hampshire Retirement System (NHRS) notified the NH Attorney General of a data security breach affecting 1 individual. In late September 2021, an error in the MyAccount portal caused a cached document containing PII (names, address, SSN, DOB) of one retiree to be erroneously presented to two other members. NHRS deactivated the portal, engaged the vendor to fix the caching bug, implemented firewall protections, and notified the affected individual.
- New Hampshire State AGas victim2017-08-09
New Hampshire Retirement System (NHRS) notified the NH Attorney General on August 9, 2017, of a data security incident affecting 45 retirees. An unauthorized party established fraudulent online accounts in the NHRS 'My Account' portal in early July 2017 to redirect pension payments to Green Dot Bank accounts. NHRS detected the fraud before payments were processed, shutting down the function and deactivating the accounts. Affected data included bank account numbers, names, addresses, DOBs, and last 4 digits of SSNs. No pension funds were lost. NHRS reported to the Secret Service and NH State Police, offered credit monitoring, and implemented stricter authentication controls.