HackingStolen CredentialsPhishingData ExfiltratedMulti-Stage ChainTargetedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTCREDENTIALSAUTHENTICATIONHighContained
Coös County Family Health
bd_4157a034d7aa6a46 · schema v1 · pii pii-v1
Full breach record for Coös County Family Health →Coos County Family Health Services experienced a data breach in September 2025 involving unauthorized access to patient records. The incident compromised names, SSNs, driver's licenses, and financial account numbers for approximately 12,000 individuals. The organization engaged forensic investigators, notified law enforcement, and is offering credit monitoring services.
Vermont clock⏱ VT AG >14 bday5 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 3 about the same incident.View merged incident
A leak claim by runsomewares about this victim predates this filing by 91 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_baf9b9fa162a0aaaMaine State AGfiled 2025-10-09Candidate
- bd_f14806bbae507bebNew Hampshire State AGfiled 2025-10-09Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2025-10-09-coos-county-family-health-services-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 9, 2025
- Raw hash
- f270864876fc03da439ce61d6d6eea7d658a8308c18c139b367915bc9778d727
Reporting entity
- Name
- Coös County Family Healthnorm: coos county family health
- Domain
- coosfamilyhealth.org
Victim entity
- Name
- Coös County Family Healthnorm: coos county family health
- Domain
- coosfamilyhealth.org
Incident
- Discovered
- Sep 1, 2025
- Materiality determined
- Oct 9, 2025
- Notification sent
- Oct 9, 2025
- Affected individuals
- 12,000
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTCREDENTIALSAUTHENTICATION
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified Vermont Attorney General
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 5 weeks(38 days from discovery to filing)
- Compliance flags
- VT AG >14 bdayLeak >90d
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.