HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumActive
Radiology Associates of Albuquerque and Advanced Imaging, LL
bd_1dfdd06cf90649ee · schema v1 · pii pii-v1
Full breach record for Radiology Associates of Albuquerque and Advanced Imaging, LL →Radiology Associates of Albuquerque and Advanced Imaging, LLC (RAA) disclosed a cyber incident involving unauthorized access to email accounts and copying of patient documents between July 2021 and August 2021. Affected data includes names, dates of birth, patient IDs, billing info, and exam types. RAA offered two years of free identity monitoring via Kroll. The incident status is active/ongoing.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_aa692a889dff6478New Hampshire State AGfiled 2022-09-13(28d gap)Verified
- bd_0470f63b4c4bb51cWashington State AGfiled 2022-09-09(32d gap)Verified by operator
- bd_34d2f46b9cdda11aCalifornia State AGfiled 2022-09-09(32d gap)Verified by operator
- bd_1003d3bbaa2684e0New Hampshire State AGfiled 2022-08-01(71d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 75d gap
- bd_a257118fa667f838Montana State AGfiled 2022-07-28(75d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-558110
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 11, 2022
- Raw hash
- 661c4b1a3c9d7d6f2b91cfb16aefc7e7aa12bf14baa543fe9064f7032c295ec6
Reporting entity
- Name
- Radiology Associates of Albuquerque and Advanced Imaging, LLnorm: radiology associates of albuquerque and advanced imaging ll
Victim entity
- Name
- Radiology Associates of Albuquerque and Advanced Imaging, LLnorm: radiology associates of albuquerque and advanced imaging ll
Incident
- Discovered
- Aug 3, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1114 Email CollectionT1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 14 months(434 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.