HackingCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
McAlester Regional Health Center
bd_6751323e8c15cad4 · schema v1 · pii pii-v1
Full breach record for McAlester Regional Health Center →McAlester Regional Health Center notified consumers of a data security incident detected on May 8, 2023. Unauthorized access to systems may have exposed names, addresses, SSNs, driver's license numbers, and dates of birth. The organization engaged forensic experts, disconnected systems, and implemented remediation including firewall and password policy changes. Credit monitoring services were offered to affected individuals.
Vermont clock✗ VT AG >45 bday27 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 3 about the same incident.View merged incident
A leak claim by karakurt about this victim predates this filing by 110 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_00762f4dda086948Maine State AGfiled 2023-11-15Candidate
- bd_bd461962ac34b82eMontana State AGfiled 2023-11-15Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-11-15-mcalester-regional-health-center-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 15, 2023
- Raw hash
- 308123b578155c13066a2f3563636aab6823b6885d89d802027bc5647f86318d
Reporting entity
- Name
- McAlester Regional Health Centernorm: mcalester regional health center
- Domain
- mcalesterregional.com
Victim entity
- Name
- McAlester Regional Health Centernorm: mcalester regional health center
- Domain
- mcalesterregional.com
Incident
- Discovered
- May 8, 2023
- Materiality determined
- —
- Notification sent
- Nov 15, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 27 weeks(191 days from discovery to filing)
- Compliance flags
- VT AG >45 bdayLeak >90d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.