GAMalwareHealthcareFinancial ServicesHealthcareRansomwareCustomer Data InvolvedData EncryptedRansom DemandedHEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHighResolved
Innovative Service Technology Management Services, Inc.
bd_1581134e72c8011f · schema v1 · pii pii-v1
Full breach record for Innovative Service Technology Management Services, Inc. →Innovative Service Technology Management Services, Inc. (GA, Health Plan) reported to HHS on 2022-11-17 a ransomware attack affecting the PHI of 2,654 individuals. Breached information was located on a Network Server. PHI involved included names, dates of birth, addresses, drivers' license and Social Security numbers, and financial information. The CE notified HHS, affected individuals, and the media, and subsequently strengthened its administrative, technical, and security safeguards.
HIPAA clock✓ HHS notified
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_443eb8e22d84e891California State AGfiled 2022-11-16(1d gap)Candidate
- bd_4bdf230a609e5c49Idaho State AGfiled 2022-11-16(1d gap)Candidate
- bd_5c669fbfc9bd4325Maine State AGfiled 2022-11-16(1d gap)Verified
- bd_7af024916731e033Montana State AGfiled 2022-11-16(1d gap)Candidate
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Nov 17, 2022
- Raw hash
- 1ee9c5e3b7fefc0382a6029cd73f2e1f442cfbfdc9466c3176a826e6cbb58d83
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- Innovative Service Technology Management Services, Inc.norm: innovative service technology management
- Industry
- Insurance — Health
Victim entity
- Name
- Innovative Service Technology Management Services, Inc.norm: innovative service technology management
- Industry
- Insurance — Health
- Industry
- Healthcaresource defaultFinancial Servicesllm
Incident
- Discovered
- Oct 17, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 2,654
- Data types
- HEALTH_BASICIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- HHS OCR notified
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: Oct 17, 2022→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.