MalwareRansomwareData EncryptedData ExfiltratedCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICMediumActive
Texas Tech University Health Sciences Center El Paso
bd_3106e65b82a37d05 · schema v1 · pii pii-v1
Full breach record for Texas Tech University Health Sciences Center El Paso →Texas Tech University Health Sciences Center El Paso notified the Maryland Attorney General of a cybersecurity event occurring between September 17 and 29, 2024. The incident involved unauthorized access to systems, resulting in the encryption of files and potential exfiltration of data. Potentially impacted information includes names, Social Security numbers, medical record numbers, and diagnosis information. The organization engaged third-party specialists for investigation and is offering credit monitoring services to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376244.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 13, 2025
- Raw hash
- a60dd02564fa9ba9b8b91d66211b490f0bbe27af75157dc7afaebb72d26437b0
Reporting entity
- Name
- Mullen Lawnorm: mullen law
Victim entity
- Name
- Texas Tech University Health Sciences Center El Pasonorm: texas tech university health sciences center el paso
- Industry
- healthcare
Incident
- Discovered
- Sep 29, 2024
- Materiality determined
- —
- Notification sent
- Jan 24, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified the Maryland Office of the Attorney General
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 14 months(410 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.