MalwareRansomwareCapture Stored DataData ExfiltratedRansom DemandedCustomer Data InvolvedEmployee Data InvolvedPIIIDENTITY_BASICEMPLOYMENTLowContained
Sempermed USA, Inc.
bd_18aec93e18de5a58 · schema v1 · pii pii-v1
Full breach record for Sempermed USA, Inc. →Sempermed USA, Inc. reported a ransomware incident occurring on March 2, 2023, affecting approximately 3 New Hampshire residents. The attack resulted in the exfiltration of data from two Florida servers, potentially including HR files and vendor records containing employee PII. Sempermed engaged forensic investigators, restored systems, and provided 24 months of credit monitoring and identity protection services to affected individuals.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_e2bc8f24894ab5e3Maine State AGfiled 2023-04-20Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/sempermed-usa-20230420.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 20, 2023
- Raw hash
- b86cad57d0c59da19f1d1861df3252af57e9f4d93f7e724502d8f8b2e031d823
Reporting entity
- Name
- Sempermed USA, Inc.norm: sempermed usa
Victim entity
- Name
- Sempermed USA, Inc.norm: sempermed usa
Incident
- Discovered
- Mar 2, 2023
- Materiality determined
- —
- Notification sent
- Apr 20, 2023
- Affected individuals
- 3
- Data types
- PIIIDENTITY_BASICEMPLOYMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified NH Department of Justice
Compliance
- Time to disclose
- 7 weeks(49 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.