HackingStolen CredentialsCustomer Data InvolvedEmployee Data InvolvedPIIIDENTITY_BASICLowContained
Sightpath Medical, LLC
bd_20d83ae62147baf7 · schema v1 · pii pii-v1
Full breach record for Sightpath Medical, LLC →Sightpath Medical, LLC notified the NH Attorney General of a data security incident discovered on Feb 9, 2022. Unauthorized actors accessed personal information of 8 NH residents (employees/beneficiaries). Sightpath engaged cybersecurity experts, reported to law enforcement, and offered Experian identity protection services.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_2bd1773cb75c3b07Maine State AGfiled 2023-08-14Verified
- bd_692fc05d939f0c74Montana State AGfiled 2023-08-14Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/sightpath-medical-20230814.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 14, 2023
- Raw hash
- 74c614c7c910385a8c195439d6e4e4e2a57884614faea895c61b121e51dec47f
Reporting entity
- Name
- Sightpath Medical, LLCnorm: sightpath medical
Victim entity
- Name
- Sightpath Medical, LLCnorm: sightpath medical
Incident
- Discovered
- Feb 9, 2022
- Materiality determined
- Jun 14, 2023
- Notification sent
- Aug 14, 2023
- Affected individuals
- 8
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified New Hampshire Attorney General Consumer Protection Bureau
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 18 months(551 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.