HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHighContained
OneBlood, Inc.
bd_4d599b95055a1ac1 · schema v1 · pii pii-v1
Full breach record for OneBlood, Inc. →OneBlood, Inc. notified the Maryland Attorney General of a data event affecting 1,049 Maryland residents. Unauthorized access occurred between July 14 and July 29, 2024, when files containing names and Social Security numbers were copied from OneBlood's network. OneBlood became aware of suspicious activity on July 28, 2024, and notified federal law enforcement. Remediation included 12 months of credit monitoring via TransUnion.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1,049 affectedView incident
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376158.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 13, 2025
- Raw hash
- 76919dbb7e4efe8d936e826434b055197fe3f5dfbba371cae23c36d21d25ddeb
Reporting entity
- Name
- Mullen Coughlin LLCnorm: mullen coughlin
Victim entity
- Name
- OneBlood, Inc.norm: oneblood
- Domain
- oneblood.org
Incident
- Discovered
- Jul 28, 2024
- Materiality determined
- —
- Notification sent
- Jan 9, 2025
- Affected individuals
- 1,049
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1119 Automated Collection
- Threat actor
- External
- Regulator citations
- Notified federal law enforcement
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 16 months(473 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.