Social EngineeringPhishingStolen CredentialsMulti-Stage ChainCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Soliant Health, LLC
bd_524152873f4b93ef · schema v1 · pii pii-v1
Full breach record for Soliant Health, LLC →Soliant Health, LLC notified the New Hampshire Attorney General on October 29, 2024, of a data security incident discovered on June 25, 2024. Suspicious activity on an employee's email account, likely via phishing, led to unauthorized access. Personal information, including SSNs and driver's licenses, of 17 NH residents was potentially compromised. Soliant engaged cybersecurity specialists, reset passwords, and offered 12 months of credit monitoring.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_1a3878088af9419eMaine State AGfiled 2024-10-30Verified
- bd_4e6b608825e4b8d6California State AGfiled 2024-10-30Verified
- bd_efccf3b2dde04c42Washington State AGfiled 2024-10-30Verified
- bd_9230477efbba892dMontana State AGfiled 2024-10-29(1d gap)Candidate
Show 1 more filing ↓Show fewer ↑up to 1d gap
- bd_dca785129ab863a1Indiana State AGfiled 2024-10-29(1d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/soliant-health-20241030.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 30, 2024
- Raw hash
- 46d87ba3c9346f59521ec9a646fc578dc8bea0d4f9479f4c25690cc199834213
Reporting entity
- Name
- Soliant Health, LLCnorm: soliant health
- Domain
- soliant.com
Victim entity
- Name
- Soliant Health, LLCnorm: soliant health
- Domain
- soliant.com
Incident
- Discovered
- Jun 25, 2024
- Materiality determined
- Oct 3, 2024
- Notification sent
- Oct 29, 2024
- Affected individuals
- 17
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified Attorney General John Formella
- Initial access
- phishing_link
Compliance
- Time to disclose
- 18 weeks(127 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.