HackingStolen CredentialsCapture Stored DataData ExfiltratedCustomer Data InvolvedRansom DemandedPIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
INTEGRIS Health
bd_1a72e8c92bd614e4 · schema v1 · pii pii-v1
Full breach record for INTEGRIS Health →INTEGRIS Health, Inc. notified New Hampshire AG of unauthorized access to patient systems on November 28, 2023. The breach involved potential theft of PII and government IDs. The company engaged third-party cybersecurity specialists, assessed systems, and is offering credit monitoring services to affected individuals.
This filing is one of 8 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- bd_9a9540162c4dedc2California State AGfiled 2024-03-01Verified
- bd_a668f84aed93d709Montana State AGfiled 2024-03-01Verified
- bd_38004de1f0a69ec4California State AGfiled 2024-02-06(24d gap)Candidate
- bd_5e34203f2729ecedNew Hampshire State AGfiled 2024-02-06(24d gap)Verified
Show 3 more filings ↓Show fewer ↑up to 25d gap
- bd_71dc05c2bcb11149Washington State AGfiled 2024-02-06(24d gap)Candidate
- bd_4af6528e31e289b5New Hampshire State AGfiled 2024-03-26(25d gap)Verified
- bd_9429099b2e32de21California State AGfiled 2024-03-26(25d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/integris-health-20240301.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 1, 2024
- Raw hash
- 169af0b6bbbcfbcbf80a85a280ea074a417a075624c9031f13f7957eafd9fca8
Reporting entity
- Name
- INTEGRIS Healthnorm: integris health
- Domain
- integrisandme.com
Victim entity
- Name
- INTEGRIS Healthnorm: integris health
- Domain
- integrisandme.com
Incident
- Discovered
- Nov 28, 2023
- Materiality determined
- —
- Notification sent
- Mar 1, 2024
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- This notice has not been delayed by law enforcement.
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 13 weeks(94 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.