MedInform, Inc.
bd_64afa89f350e71b1 · schema v1 · pii pii-v1
Full breach record for MedInform, Inc. →MedInform, Inc. notified the NH AG of a security event affecting 1 NH resident. Suspicious activity identified Dec 21, 2022 involving malicious encryption. Unauthorized access occurred Dec 5-21, 2022. Unencrypted PHI of Cleveland Clinic patients was exfiltrated. MedInform engaged third-party specialists, notified law enforcement and HHS, and offered 24 months of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 5, 2022
Begins
Dec 21, 2022
Discovered
May 31, 2023
Filed
vs. sector median
+10 wks slower
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Massachusetts State AGbd_44dedc22f0014c002023-05-24 · +7dVerified
- HHS OCRbd_570aaa27fef9df492023-05-24 · +7dVerified
- Montana State AGbd_d7ba3bdbe803744a2023-05-24 · +7dVerified
Filing propagation · 4 filings · 4 states
View merged incident ↗Pattern: first filing May 24 (MA), last May 31 (NH) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.