HackingStolen CredentialsCapture Stored DataCustomer Data InvolvedData ExfiltratedPHIIDENTITY_BASICLowContained
Clay Platte Family Medicine, Summit Family and Sports Medicine Clinic, Cobblestone Family Medicine Clinic, and Barry Pointe Family Medicine Clinic
bd_54d0a8f69407c74a · schema v1 · pii pii-v1
Full breach record for Clay Platte Family Medicine, Summit Family and Sports Medicine Clinic, Cobblestone Family Medicine Clinic, and Barry Pointe Family Medicine Clinic →Clay Platte Family Medicine and affiliated clinics detected unauthorized network access on June 26, 2024. An actor accessed and acquired files containing PHI and basic identity data. Four New Hampshire residents were affected. Notices were mailed October 16, 2024, offering credit monitoring. The incident is contained.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_fa519df46c4c3309Montana State AGfiled 2024-10-18Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/clay-platte-family-medicine-summit-sports-cobblestone-barry-pointe-20241018.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 18, 2024
- Raw hash
- dc07b5a8c5ca3c9682aaf2784f4e5dfa4f65fa63217c57f1aff56517d54ed459
Reporting entity
- Name
- Clay Platte Family Medicine, Summit Family and Sports Medicine Clinic, Cobblestone Family Medicine Clinic, and Barry Pointe Family Medicine Clinicnorm: clay platte family medicine summit family and sports medicine clinic cobblestone family medicine clinic and barry pointe family medicine clinic
Victim entity
- Name
- Clay Platte Family Medicine, Summit Family and Sports Medicine Clinic, Cobblestone Family Medicine Clinic, and Barry Pointe Family Medicine Clinicnorm: clay platte family medicine summit family and sports medicine clinic cobblestone family medicine clinic and barry pointe family medicine clinic
Incident
- Discovered
- Jun 26, 2024
- Materiality determined
- Sep 10, 2024
- Notification sent
- Oct 16, 2024
- Affected individuals
- 4
- Data types
- PHIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 16 weeks(114 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.