Tombigbee Healthcare Authority
bd_6d02dfbff9534a39 · schema v1 · pii pii-v1
Full breach record for Tombigbee Healthcare Authority →2 incidents on fileTombigbee Healthcare Authority dba Whitfield Regional Hospital notified Massachusetts residents of a cybersecurity incident occurring between May 15, 2025, and June 8, 2025. Unauthorized access resulted in the exposure of personal and health information. The hospital secured its network, reported to law enforcement, and engaged external cybersecurity professionals. Affected individuals were offered 12 months of complimentary credit monitoring via Experian IdentityWorks.
J jump to incidentP pin to compareR raw source
Incident timeline
May 15, 2025
Begins
Jun 8, 2025
Discovered
Jul 17, 2026
Filed
vs. sector median
+47 wks slower
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Nebraska State AGbd_fe79a01bdb58b9a22026-07-17Verified
- New Hampshire State AGbd_e01876784872e99c2026-07-23 · +6dCandidate
- Illinois State AGbd_3d1e8ad304d79a662026-07-01 · +16dVerified
Filing propagation · 4 filings · 4 states
View merged incident ↗Pattern: first filing Jul 1 (IL), last Jul 23 (NH) — a 22-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.