HackingStolen CredentialsTargetedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICPHIMediumContained
Medusind, Inc.
bd_166adc1614e76acd · schema v1 · pii pii-v1
Full breach record for Medusind, Inc. →Medusind, Inc., a revenue cycle management company, disclosed a cyber incident on December 29, 2023, where unauthorized access to its IT network resulted in the potential theft of personal and health information. Affected data included names, SSNs, driver's licenses, health insurance details, and payment card numbers. Medusind engaged forensic investigators, secured Kroll for two years of identity monitoring, and implemented enhanced security measures.
This filing is one of 9 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- bd_44842e5c901da36aCalifornia State AGfiled 2025-01-07Verified
- bd_4c0617bdd3903364Indiana State AGfiled 2025-01-07Verified
- bd_853cd6d42e42a889Oregon State AGfiled 2025-01-07Candidate
- bd_c91dd71a3986d50cHHS OCRfiled 2025-01-07Verified
Show 4 more filings ↓Show fewer ↑up to 35d gap
- bd_e7e2fd3d471ae780Maine State AGfiled 2025-01-07Verified
- bd_bef150eaeee5f6b3Oregon State AGfiled 2025-02-11(35d gap)Verified
- bd_e16e595df9c8d7edCalifornia State AGfiled 2025-02-11(35d gap)Verified
- bd_e8a96821895972c9Washington State AGfiled 2025-02-11(35d gap)Verified
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2025/02/Exhibit-B-Medusind-Simple-Individual-Notice.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 7, 2025
- Raw hash
- 39146677cf3a4f00af5f881af26cdd0c134f1fe4dae685da014c92edb157daaa
Reporting entity
- Name
- Medusind, Inc.norm: medusind
Victim entity
- Name
- Medusind, Inc.norm: medusind
Incident
- Discovered
- Dec 29, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICPHI
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 13 months(375 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.