MalwareRansomwareRansom DemandedCustomer Data InvolvedEmployee Data InvolvedPHIIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICEMPLOYMENTMediumContained
FMC Corp
bd_73cf09401c412b0c · schema v1 · pii pii-v1
Full breach record for FMC Corp →FMC Services, LLC, a primary care clinic operator in Texas, detected a ransomware attack on July 26, 2022. An unauthorized third party infiltrated the network and demanded ransom. The incident potentially exposed patient and employee data, including names, addresses, dates of birth, Social Security numbers, and health information. FMC engaged forensic investigators, secured its network, and offered one year of identity monitoring via Kroll.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_0b35cbf2f7b8545dMontana State AGfiled 2022-09-23Verified
- bd_d35d7809ba30bad5HHS OCRfiled 2022-09-23Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-557584
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 23, 2022
- Raw hash
- 7eba0770902e63edb8ca973e9a9f40dc502fded4325e845a7075f4d4bd498e82
Reporting entity
- Name
- FMC Corpnorm: fmc
- Domain
- fmc.com
Victim entity
- Name
- FMC Corpnorm: fmc
- Domain
- fmc.com
Incident
- Discovered
- Jul 26, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICEMPLOYMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 8 weeks(59 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.