HackingStolen CredentialsData ExfiltratedData EncryptedCustomer Data InvolvedSupply Chain (3P Vendor)IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICMediumContained
Frank Eye Center, P.A.
bd_583734ed645529b7 · schema v1 · pii pii-v1
Full breach record for Frank Eye Center, P.A. →Frank Eye Center, P.A. reported a data security incident involving its third-party vendor, Eye Care Leaders (ECL). On December 4, 2021, an unknown attacker accessed ECL's myCare Integrity EMR system, deleted data, and potentially accessed patient information including names, SSNs, and medical records. Two New Hampshire residents were affected. Frank Eye Center notified the NH Attorney General on April 29, 2022, offering credit monitoring to affected individuals.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_e32a7c3c27e21aeaMontana State AGfiled 2022-04-29Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/frank-eye-20220429.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 29, 2022
- Raw hash
- 61006338275d542b0ca5d8d67ef3ba1ec35b35af634f9cfe73d50b8f87006ebe
Reporting entity
- Name
- Frank Eye Center, P.A.norm: frank eye center
Victim entity
- Name
- Frank Eye Center, P.A.norm: frank eye center
Incident
- Discovered
- Dec 4, 2021
- Materiality determined
- —
- Notification sent
- Apr 29, 2022
- Affected individuals
- 2
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid Accounts
- Threat actor
- External
- Third party
- via Eye Care Leaders
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 21 weeks(146 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.