TEXASMalwareHealthcareHealthcareRansomwareBusiness Associate (HIPAA)Customer Data InvolvedData EncryptedRansom DemandedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICHighContained
Texas Medical Liability Trust
bd_73e4cffa8d987d0d · schema v1 · pii pii-v1
Full breach record for Texas Medical Liability Trust →Texas Medical Liability Trust (a Business Associate) reported to HHS OCR on 2023-03-01 a Hacking/IT Incident affecting 2,069 individuals. The incident involved a ransomware attack on a Network Server. PHI exposed included names, Social Security numbers, driver's license numbers, dates of birth, and financial information. The covered entity notified HHS, affected individuals, the media, and provided substitute notice, as well as complimentary credit monitoring services and additional administrative and technical safeguards.
HIPAA clock✓ HHS notified
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_9480e2a1b7c43a4cMaine State AGfiled 2023-03-21(20d gap)Verified
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Mar 1, 2023
- Raw hash
- 6dc757aac0554c53211c6324013a6dc68a3ff5ec14f7f763b35a52693f155b8c
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- Texas Medical Liability Trustnorm: texas medical liability
- Industry
- Business Associate
Victim entity
- Name
- Texas Medical Liability Trustnorm: texas medical liability
- Industry
- Business Associate
- Industry
- Healthcaresource default
Incident
- Discovered
- Dec 12, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 2,069
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- HHS OCR notified
- Third party
- via Texas Medical Liability Trustbusiness associate
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: Dec 12, 2022→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.