HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICHEALTH_BASICLowContained
CaptureRx
bd_5dfe0763832bdc53 · schema v1 · pii pii-v1
Full breach record for CaptureRx →CaptureRx, a healthcare technology vendor, notified South Carolina residents of a cybersecurity incident where unauthorized access occurred on February 6, 2021. Files containing names, dates of birth, and prescription information were accessed. The incident was discovered on February 19, 2021, and notification letters were sent around March 19, 2021. CaptureRx investigated, enhanced security policies, and conducted workforce training.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_388b84d78c4c18f6Delaware State AGfiled 2021-05-28(10d gap)Verified
- bd_e60a8afd3659647eMontana State AGfiled 2021-05-05(13d gap)Candidate
Source provenance
- Source URL
- https://consumer.sc.gov/sites/consumer/files/Documents/Business%20Resources%20Laws/Related%20Laws/Breaches/2021/CaptureRx.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 18, 2021
- Raw hash
- b009ba48c3b965ac04abd9a4704cf38a10215fae81291345e595826d6aa69839
Reporting entity
- Name
- CaptureRxnorm: capturerx
Victim entity
- Name
- CaptureRxnorm: capturerx
Incident
- Discovered
- Feb 19, 2021
- Materiality determined
- —
- Notification sent
- Mar 19, 2021
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 13 weeks(88 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.