HackingData ExfiltratedCustomer Data InvolvedPIIIDENTITY_BASICPHIHEALTH_BASICLowContained
Boutin Jones
bd_64d67edfdbfe400c · schema v1 · pii pii-v1
Full breach record for Boutin Jones →Boutin Jones, a healthcare staffing firm working with Crestwood Behavioral Health and Helios Healthcare, experienced unauthorized access to its network on October 15, 2024. An unknown individual accessed and exfiltrated files containing patient information, including names and potentially protected health information. The company engaged third-party cybersecurity professionals, contained the incident, and is offering credit monitoring to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-615030
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 3, 2025
- Raw hash
- dd2310438c79219edc563385ed9637a28c006c973cf15f3ddbeca5c92047063d
Reporting entity
- Name
- Boutin Jonesnorm: boutin jones
Victim entity
- Name
- Boutin Jonesnorm: boutin jones
Incident
- Discovered
- Oct 15, 2024
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICPHIHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- External
Compliance
- Time to disclose
- 14 months(414 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.