HackingDelayed DiscoveryPHIIDENTITY_BASICLowContained
Bienville Orthopaedic Specialists LLC
bd_4b7a4f2dc65c7f2c · schema v1 · pii pii-v1
Full breach record for Bienville Orthopaedic Specialists LLC →Bienville Orthopaedic Specialists LLC disclosed a cyberattack on its computer systems. Unauthorized access occurred between Feb 3 and March 5, 2023, resulting in the acquisition of PHI and basic identity data. The company secured systems, notified law enforcement, and offered credit monitoring. No specific victim count was provided in the filing.
Vermont clock✗ VT AG >45 bday26 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 5 about the same incident.View merged incident
A leak claim by abyss about this victim predates this filing by 180 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_7181336775d0a4c7Leak Siteabyssfiled 2023-03-27(158d gap)Verified by operator
Regulatory filings (3) · sorted by filing gap
- bd_b772198a8323fb6dMontana State AGfiled 2023-09-01Verified by operator
- bd_2533021e4de60b52Maine State AGfiled 2023-09-05(4d gap)Verified
- bd_8fbea44f36bfa4bcHHS OCRfiled 2023-09-05(4d gap)Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-09-01-bienville-orthopaedic-specialists-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 1, 2023
- Raw hash
- 2bf85295ad7c3e93c5cb83c6f1a663cfb8bb6628787aeabfaf66c84c1223694e
Reporting entity
- Name
- Bienville Orthopaedic Specialists LLCnorm: bienville orthopaedic specialists
- Domain
- bienvilleortho.com
Victim entity
- Name
- Bienville Orthopaedic Specialists LLCnorm: bienville orthopaedic specialists
- Domain
- bienvilleortho.com
Incident
- Discovered
- Mar 5, 2023
- Materiality determined
- Sep 1, 2023
- Notification sent
- Sep 1, 2023
- Affected individuals
- Not disclosed
- Data types
- PHIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- notified law enforcement
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 26 weeks(180 days from discovery to filing)
- Compliance flags
- VT AG >45 bdayLeak >90d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.