MalwareRansomwareData EncryptedData ExfiltratedPHIHEALTH_BASICIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
Abrams & Bayliss LLP
bd_737b4e4cdd3605c2 · schema v1 · pii pii-v1
Full breach record for Abrams & Bayliss LLP →Abrams & Bayliss, LLC (A&B), a Delaware law firm, notified individuals of a ransomware attack detected on March 17, 2022, which impacted local servers containing Protected Health Information (PHI) and personal data of individuals involved in Delaware's opioid litigation against Purdue Pharma. A&B engaged forensic investigators, retained outside counsel, and notified the FBI. The firm recovered via backups and is offering two years of credit monitoring and identity theft protection services to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2023/01/AB-Breach-Notification-.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 5, 2023
- Raw hash
- d6765cbaad7cad3c88d1749e9818d1ed3747c0f9ecc373b37749f9f2eb8ad3b5
Reporting entity
- Name
- Abrams & Bayliss LLPnorm: abrams bayliss
- Domain
- abramsbayliss.com
Victim entity
- Name
- Abrams & Bayliss LLPnorm: abrams bayliss
- Domain
- abramsbayliss.com
Incident
- Discovered
- Mar 17, 2022
- Materiality determined
- —
- Notification sent
- Jan 5, 2023
- Affected individuals
- Not disclosed
- Data types
- PHIHEALTH_BASICIDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- notified the FBI and cooperated with them
Compliance
- Time to disclose
- 42 weeks(294 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.