MalwareRansomwareData EncryptedData ExfiltratedRansom DemandedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNTMediumContained
Ryders Health
bd_092e30ca4de85962 · schema v1 · pii pii-v1
Full breach record for Ryders Health →Ryders Health Management, a skilled nursing and rehabilitation provider, disclosed a ransomware incident detected on July 9, 2023. The attacker encrypted systems and exfiltrated data to demand ransom. Impacted data included names, SSNs, DOBs, medical records, and payment info. Ryders took systems offline, engaged forensic professionals, notified law enforcement, and offered 24 months of Experian IdentityWorks. No evidence of misuse was found at the time of notice.
Vermont clock⏱ VT AG >14 bday9 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Ransomware claims (1)
- bd_d34a1873dc359200Leak Sitelockbit_3filed 2023-08-31(7d gap)Candidate
Regulatory filings (1) · sorted by filing gap
- bd_7f55a176f9ed8155Maine State AGfiled 2023-09-07Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-09-07-ryders-health-management-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 7, 2023
- Raw hash
- 50c4633e1f70a22f411bfc76d7d38c5d3c86595c2c63c9cb400ba3cd6dfb1ba7
Reporting entity
- Name
- Ryders Healthnorm: ryders health
- Domain
- rydershealth.com
Victim entity
- Name
- Ryders Healthnorm: ryders health
- Domain
- rydershealth.com
Incident
- Discovered
- Jul 9, 2023
- Materiality determined
- —
- Notification sent
- Sep 7, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- notified federal law enforcementreported this Incident to relevant government agencies
Compliance
- Time to disclose
- 9 weeks(60 days from discovery to filing)
- Compliance flags
- VT AG >14 bday
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.