HackingHealthcareHealthcareData ExfiltratedCustomer Data InvolvedDelayed DiscoveryPIIIDENTITY_BASICLowContained
INTEGRIS Health
bd_38004de1f0a69ec4 · schema v1 · pii pii-v1
Full breach record for INTEGRIS Health →INTEGRIS Health notified California residents of unauthorized access to certain systems on November 28, 2023. An unauthorized party accessed and/or acquired files containing personal information including names and other data elements (excluding employment, driver's license, financial/payment, or credentials). A group claimed responsibility in December 2023. INTEGRIS engaged third-party cybersecurity specialists, reviewed affected data, and is offering 24 months of IDX credit monitoring. Approximately 95 Rhode Island residents were noted as impacted.
This filing is one of 8 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- bd_5e34203f2729ecedNew Hampshire State AGfiled 2024-02-06Verified
- bd_71dc05c2bcb11149Washington State AGfiled 2024-02-06Candidate
- bd_1a72e8c92bd614e4New Hampshire State AGfiled 2024-03-01(24d gap)Verified
- bd_9a9540162c4dedc2California State AGfiled 2024-03-01(24d gap)Verified
Show 3 more filings ↓Show fewer ↑up to 49d gap
- bd_a668f84aed93d709Montana State AGfiled 2024-03-01(24d gap)Verified
- bd_4af6528e31e289b5New Hampshire State AGfiled 2024-03-26(49d gap)Verified
- bd_9429099b2e32de21California State AGfiled 2024-03-26(49d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-580600
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 6, 2024
- Raw hash
- 1e5b8e57c8703e97528098eaa974a1905578e520a7e84728fcf50211629b5edb
Reporting entity
- Name
- INTEGRIS Healthnorm: integris health
- Domain
- integrisandme.com
Victim entity
- Name
- INTEGRIS Healthnorm: integris health
- Domain
- integrisandme.com
- Industry
- Healthcarellm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 95
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated CollectionT1074 Data Staged
- Threat actor
- External
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.