HackingCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICMediumContained
NorthStar Emergency Medical Services
bd_0fa5630134e8aa5a · schema v1 · pii pii-v1
Full breach record for NorthStar Emergency Medical Services →NorthStar Emergency Medical Services notified consumers of a data breach discovered on September 16, 2022. Unauthorized actors accessed files containing names, SSNs, and protected health information. NorthStar engaged cybersecurity experts, implemented technical security measures, and offered complimentary identity monitoring services to affected individuals.
Vermont clock✗ VT AG >45 bday26 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_038556dad24b89e8HHS OCRfiled 2023-03-14Verified
- bd_13d344737f378835Montana State AGfiled 2023-03-14Verified
- bd_d2e6a34f2a258829Maine State AGfiled 2023-03-14Verified
- bd_ee9f21e55fb817fbNew Hampshire State AGfiled 2023-03-14Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-03-14-northstar-emergency-medical-services-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 14, 2023
- Raw hash
- e67cb5ec3ac0defc0734168e935f0919241fe32755d035ac140b7ed4faa37a4c
Reporting entity
- Name
- NorthStar Emergency Medical Servicesnorm: northstar emergency medical
Victim entity
- Name
- NorthStar Emergency Medical Servicesnorm: northstar emergency medical
Incident
- Discovered
- Sep 16, 2022
- Materiality determined
- Mar 8, 2023
- Notification sent
- Mar 14, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated Collection
- Threat actor
- External
Compliance
- Time to disclose
- 26 weeks(179 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.