HackingStolen CredentialsCustomer Data InvolvedTargetedPIIIDENTITY_BASICLowContained
INTEGRIS Health
bd_4af6528e31e289b5 · schema v1 · pii pii-v1
Full breach record for INTEGRIS Health →INTEGRIS Health, a healthcare provider and EHR support vendor, reported a supplemental breach affecting patients of IH Community Hospitals. Unauthorized access occurred on or about Nov 28, 2023, involving patient names and basic PII. The incident was contained, and IDX credit monitoring was offered. The filing is a supplemental notice to prior notifications.
This filing is one of 8 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- bd_9429099b2e32de21California State AGfiled 2024-03-26Verified
- bd_1a72e8c92bd614e4New Hampshire State AGfiled 2024-03-01(25d gap)Verified
- bd_9a9540162c4dedc2California State AGfiled 2024-03-01(25d gap)Verified
- bd_a668f84aed93d709Montana State AGfiled 2024-03-01(25d gap)Verified
Show 3 more filings ↓Show fewer ↑up to 49d gap
- bd_38004de1f0a69ec4California State AGfiled 2024-02-06(49d gap)Candidate
- bd_5e34203f2729ecedNew Hampshire State AGfiled 2024-02-06(49d gap)Verified
- bd_71dc05c2bcb11149Washington State AGfiled 2024-02-06(49d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/integris-health-20240326.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 26, 2024
- Raw hash
- a4cd428a42d6582f828a71036e0457a33306b0c31a6bceaf21491ff9c975a889
Reporting entity
- Name
- INTEGRIS Healthnorm: integris health
- Domain
- integrisandme.com
Victim entity
- Name
- INTEGRIS Healthnorm: integris health
- Domain
- integrisandme.com
Incident
- Discovered
- Nov 28, 2023
- Materiality determined
- Jan 29, 2024
- Notification sent
- Feb 6, 2024
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 17 weeks(119 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.