HackingStolen CredentialsCapture Stored DataData ExfiltratedCustomer Data InvolvedTargetedPIIIDENTITY_BASICLowContained
Hutchinson Clinic, PA
bd_20603d53fadd160d · schema v1 · pii pii-v1
Full breach record for Hutchinson Clinic, PA →Hutchinson Clinic, P.A. notified the New Hampshire Attorney General of unauthorized network access between Dec 19-21, 2022. Suspicious activity was detected on Dec 21, 2022. The incident affected 9 New Hampshire residents, exposing personal information. The clinic engaged forensic specialists, notified law enforcement and HHS, and offered credit monitoring via Experian.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_764ba91911e54c8aMontana State AGfiled 2023-08-04(4d gap)Candidate
- bd_c54d88c6b1d4bfc1Vermont State AGfiled 2023-08-04(4d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/hutchinson-clinic-20230808.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 8, 2023
- Raw hash
- fc2b82d9a937b95be9dc1f380682ae0fd2e00b87e2ab4f6092c18ef6a82dadf2
Reporting entity
- Name
- Hutchinson Clinic, PAnorm: hutchinson clinic
Victim entity
- Name
- Hutchinson Clinic, PAnorm: hutchinson clinic
Incident
- Discovered
- Dec 21, 2022
- Materiality determined
- —
- Notification sent
- Aug 3, 2023
- Affected individuals
- 9
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified federal law enforcementNotified the U.S. Department of Health and Human Services
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 33 weeks(230 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.