PhysicalTheftData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICMediumContained
North East Medical Services Foundation
bd_1007048df3674b84 · schema v1 · pii pii-v1
Full breach record for North East Medical Services Foundation →North East Medical Services (NEMS) notified patients of a breach involving the theft of an employee's laptop from a vehicle on July 11, 2015. The laptop contained spreadsheets with patient names, DOBs, SSNs (embedded in account numbers), and limited PHI. NEMS reported the crime to police, engaged AllClear ID for 12 months of identity protection, and initiated staff retraining. The incident was discovered on July 13, 2015.
California clockDiscovered Jul 13, 2015 → Notified Jul 30, 201517d ✓ CA 60-day OK18 days discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-57240
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 31, 2015
- Raw hash
- a624bbc53665caa50b65297aeca91fb6f27765828e8843d6f4e16dfb061b688d
Reporting entity
- Name
- North East Medical Services Foundationnorm: north east medical
Victim entity
- Name
- North East Medical Services Foundationnorm: north east medical
Incident
- Discovered
- Jul 13, 2015
- Materiality determined
- —
- Notification sent
- Jul 30, 2015
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1052 Exfiltration Over Physical Medium
- Threat actor
- ExternalFinancial
- Regulator citations
- Submitted breach notification to California Office of the Attorney General
- Initial access
- insider_action
Compliance
- Time to disclose
- 18 days(18 days from discovery to filing)
- Compliance flags
- CA 60-day OK · 17d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Jul 13, 2015→ Notified: Jul 30, 201517d 60 days (analyst band, pre-2026 discoveries) CA 60-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.