Social EngineeringPhishingData ExfiltratedData PublishedCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICHEALTH_BASICMediumContained
Heart South Cardiovascular Group
bd_718fd6945d5f1904 · schema v1 · pii pii-v1
Full breach record for Heart South Cardiovascular Group →Heart South Cardiovascular Group notified the New Hampshire Attorney General of a cybersecurity incident affecting approximately 2 NH residents. On November 11, 2025, the group learned an unauthorized party claimed to possess data. Investigation found no unauthorized network access, but a bad actor posted limited data on the dark web. Patient PII (names, SSNs, DOB) and PHI (treatments, diagnoses) were potentially exposed. Notifications began April 6, 2026, offering credit monitoring via Kroll.
Leak gap clock⏱ Leak >90d22 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
A leak claim by rhysida about this victim predates this filing by 153 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_2028c3f599016886Leak Siterhysidafiled 2025-11-10(153d gap)Verified
Regulatory filings (2) · sorted by filing gap
- bd_dc4e83aef803c891Maine State AGfiled 2026-04-06(7d gap)Verified
- bd_7927d296f02ce5dbHHS OCRfiled 2024-06-13(669d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/heart-south-cardiovascular-20260413.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 13, 2026
- Raw hash
- 2840758b801140fc07c65d4e5422d8ac4fcc5bb2fbd486e5dd38bf99272a8554
Reporting entity
- Name
- MCDONALD HOPKINS LLCnorm: mcdonald hopkins
Victim entity
- Name
- Heart South Cardiovascular Groupnorm: heart south cardiovascular
- Domain
- heartsouthpc.com
Incident
- Discovered
- Nov 11, 2025
- Materiality determined
- —
- Notification sent
- Apr 6, 2026
- Affected individuals
- 2
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICHEALTH_BASIC
- Attack vector
- Unknown
- MITRE ATT&CK
- T1566 PhishingT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified New Hampshire Attorney General
- Initial access
- phishing_link
Compliance
- Time to disclose
- 22 weeks(153 days from discovery to filing)
- Compliance flags
- Leak >90d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.