AccidentalMisdeliveryCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
City of Miami Beach Health Facilities Authority
bd_443ac0faa23b46b5 · schema v1 · pii pii-v1
Full breach record for City of Miami Beach Health Facilities Authority →The City of Miami Beach notified consumers that on September 3, 2024, an archive folder containing utility customer information was inadvertently moved to a publicly accessible folder in its document management system. The City removed the folder and launched an investigation. Potentially affected data includes names, addresses, dates of birth, driver's license numbers, and financial account numbers. The City offered 12 months of complimentary credit monitoring through Cyberscout.
Vermont clock✗ VT AG >45 bday10 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_3803e3505ab65e06Indiana State AGfiled 2024-11-13Verified
- bd_87b74f6eb4927b3cNew Hampshire State AGfiled 2024-11-13Verified
- bd_a42982b76161deaaMaine State AGfiled 2024-11-13Candidate
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-11-13-city-miami-beach-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 13, 2024
- Raw hash
- b38318815da7c0c3987b31d951f044794916810d814aab4b6e2b82330e30036a
Reporting entity
- Name
- City of Miami Beach Health Facilities Authoritynorm: city of miami beach health facilities authority
- Domain
- miamibeachfl.gov
Victim entity
- Name
- City of Miami Beach Health Facilities Authoritynorm: city of miami beach health facilities authority
- Domain
- miamibeachfl.gov
Incident
- Discovered
- Sep 3, 2024
- Materiality determined
- —
- Notification sent
- Nov 13, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1119 Automated Collection
- Regulator citations
- Filed notice with Vermont Attorney General
Compliance
- Time to disclose
- 10 weeks(71 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.