HackingData ExfiltratedCustomer Data InvolvedPHIHEALTH_BASICIDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTMediumContained
Unlimited Technology
bd_124f22a9913daf20 · schema v1 · pii pii-v1
Full breach record for Unlimited Technology →Unlimited Technology Systems, LLC, a provider of practice management software to healthcare organizations, experienced a data breach. Unauthorized activity was discovered on October 19, 2025. An investigation revealed that an unauthorized actor obtained copies of personal information, including health insurance details, medical records, Social Security numbers, and government IDs, between October 5 and October 10, 2025. The company engaged forensic investigators, notified law enforcement, and is offering two years of identity monitoring via Kroll.
This filing is one of 9 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- bd_3133b856aab907b3Delaware State AGfiled 2026-07-21Verified
- bd_81a8bb8c8e0575f8Oregon State AGfiled 2026-07-21Verified
- bd_8a1a0812d9e71ea3Vermont State AGfiled 2026-07-21Verified
- bd_a7f11dfb3959ee5fSouth Carolina State AGfiled 2026-07-21Verified
Show 4 more filings ↓Show fewer ↑up to 20d gap
- bd_e0120e63989aeb00Iowa State AGfiled 2026-07-21Candidate
- bd_428917ebd89e5a1dTexas State AGfiled 2026-07-23(2d gap)Verified
- bd_2589310db11bc9e8Massachusetts State AGfiled 2026-07-01(20d gap)Verified
- bd_e248abd937dd2b15Iowa State AGfiled 2026-07-01(20d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-626846
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 21, 2026
- Raw hash
- 0ace0da5b74e9670c3ad4be9a8059dddb4c8f09cb36c1578e421610f751993ce
Reporting entity
- Name
- Unlimited Technologynorm: unlimited technology
- Domain
- utglobal.com
Victim entity
- Name
- Unlimited Technologynorm: unlimited technology
- Domain
- utglobal.com
Incident
- Discovered
- Oct 19, 2025
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIHEALTH_BASICIDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Notified law enforcement
Compliance
- Time to disclose
- 39 weeks(275 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.