MalwareRansomwareData ExfiltratedData EncryptedRansom DemandedCustomer Data InvolvedMulti-Stage ChainPHIPIILowActive
HCA Healthcare Inc.
bd_35790d97fa0a2859 · schema v1 · pii pii-v1
Full breach record for HCA Healthcare Inc. →Delaware Attorney General received a breach notification from HCA Healthcare regarding a ransomware incident. The breach involved the encryption and exfiltration of patient data, with demands placed on the organization. The incident is classified as active, involving external actors with financial motives.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_2da8bd258eae0806SEC 8-Kfiled 2023-07-10(4d gap)Candidate
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2023/09/HCA-Healthcare.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 14, 2023
- Raw hash
- cf00f371afa5c9149dc3c61c8610263120f2aacc86839ab5a065babef7c2c42d
Reporting entity
- Name
- HCA Healthcare Inc.norm: hca healthcare
- Domain
- hcahealthcare.com
Victim entity
- Name
- HCA Healthcare Inc.norm: hca healthcare
- Domain
- hcahealthcare.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIPII
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.