MalwareRansomwareData ExfiltratedData EncryptedSupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_BASICHEALTH_BASICLowContained
Mercy Health
bd_6bcdcb87d98dbbad · schema v1 · pii pii-v1
Full breach record for Mercy Health →Mercy Health Foundation, Inc. notified individuals of a ransomware incident involving its third-party vendor, Blackbaud, Inc. The attack occurred in May 2020, and the Foundation was notified on July 16, 2020. The incident potentially exposed donor names, dates of birth, and health visit details. Sensitive data like SSNs and financial card numbers were encrypted. No fraud was identified.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2020/10/Mercy-Health-Foundation-Template-Letter.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 18, 2020
- Raw hash
- f6a9880995938840241a63f8adf71e5f1d5ee6605d4dd3124a24c14a81965240
Reporting entity
- Name
- Mercy Healthnorm: mercy health
Victim entity
- Name
- Mercy Healthnorm: mercy health
Incident
- Discovered
- Jul 16, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICHEALTH_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Third party
- via Blackbaud, Inc.
- Initial access
- supply_chain
Compliance
- Time to disclose
- 9 weeks(64 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.