RS Medical
bd_51b00751b6601cd3 · schema v1 · pii pii-v1
Full breach record for RS Medical →RS Medical notified customers in Delaware of a February 2019 incident where an employee's email account was accessed by external actors who sent 10,000 phishing emails. The breach potentially exposed names, addresses, DOBs, SSNs, and diagnosis codes. RS Medical notified HHS and the Delaware AG, implemented security upgrades, and educated staff.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 11, 2019
Begins
Feb 12, 2019
Discovered
Jun 1, 2019
Filed
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Oregon State AGbd_162e5d83eb805c142019-04-11 · +51dVerified
- Massachusetts State AGbd_9d007b1f8d31686c2019-04-11 · +51dVerified
- HHS OCRbd_fc0ba3bb782085802019-04-01 · +61dVerified
Filing propagation · 4 filings · 4 states
View merged incident ↗Pattern: first filing Apr 1 (WA), last Jun 1 (DE) — a 61-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.