DisclosureLens
HackingHealthcareHealthcareCustomer Data InvolvedData ExfiltratedPHIIdentity (basic)Government IDFinancial accountMediumContained

INTEGRIS Health

bd_1a72e8c92bd614e4 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Filed

Mar 1, 2024

To disclose

Affected

Not disclosed

Linked

11 filings

Confidence

64%
Full breach record for INTEGRIS Health2 incidents on file

INTEGRIS Health, Inc. notified the NH Attorney General of unauthorized access to certain systems on November 28, 2023. The investigation determined that files containing patient personal information were accessed by an unauthorized party. On December 24, 2023, patients began receiving communications from a group claiming responsibility. INTEGRIS Health engaged third-party cybersecurity specialists, secured the environment, and is offering credit monitoring and identity theft protection services through IDX to affected individuals. The incident involved PHI and PII of patients in multiple states including NH, RI, NY, NC, NM, MD, and DC.

Incident timeline

Nov 28, 2023

Begins

Mar 1, 2024

Filed

This filing is one of 11 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (10) · sorted by filing gap

Show 6 more filingsup to 35d gap

Filing propagation · 11 filings · 7 states

View merged incident ↗

Pattern: first filing Jan 26 (OK), last Mar 26 (CA) — a 60-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.