HackingStolen CredentialsTargetedIDENTITY_BASICHEALTH_BASICLowContained
Southwest Healthcare Services
bd_77a08581489e18ad · schema v1 · pii pii-v1
Full breach record for Southwest Healthcare Services →Southwest Healthcare Services notified Vermont AG that an unauthorized actor accessed its network between Oct 28-29, 2022. Discovered Jan 31, 2023, the incident involved access to files containing names and medical information. The company secured the network and engaged outside cybersecurity professionals. No evidence of identity theft was found.
Vermont clock⏱ VT AG >14 bday8 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 6 about the same incident.View merged incident
A leak claim by donutleaks about this victim predates this filing by 160 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_d333197f85b58141Leak Sitedonutleaksfiled 2022-10-22(160d gap)Verified by operator
Regulatory filings (4) · sorted by filing gap
- bd_0c8778d9b0a5454dWashington State AGfiled 2023-03-31Verified by operator
- bd_3e7012f6243e4f0dMontana State AGfiled 2023-03-31Verified by operator
- bd_c057300c877b220eVermont State AGfiled 2023-03-31Verified by operator
- bd_b9a3d1a0f4aeea7dHHS OCRfiled 2023-04-01(1d gap)Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2023-03-31-southwest-healthcare-services-data-breach-notice-consumers-0
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 31, 2023
- Raw hash
- 271bce94b50a9ed7f5b0b97aa640e4dca11c3ae642a8778f92f4d64059e0e0ed
Reporting entity
- Name
- Southwest Healthcare Servicesnorm: southwest healthcare
Victim entity
- Name
- Southwest Healthcare Servicesnorm: southwest healthcare
Incident
- Discovered
- Jan 31, 2023
- Materiality determined
- Mar 31, 2023
- Notification sent
- Mar 31, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Filed notice with Vermont Attorney General
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 8 weeks(59 days from discovery to filing)
- Compliance flags
- VT AG >14 bdayLeak >90d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.