Social EngineeringPhishingBECCustomer Data InvolvedEmployee Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTPHIHEALTH_BASICCREDENTIALSHighContained
Health & Palliative Services of the Treasure Coast, Inc.
bd_7b7bd8a835b4d2a3 · schema v1 · pii pii-v1
Full breach record for Health & Palliative Services of the Treasure Coast, Inc. →Treasure Coast Hospice disclosed a business email compromise discovered on September 25, 2024, affecting 13,234 individuals (37 in NH). Compromised data included names, DOBs, SSNs, driver's licenses, PHI, and credentials. The organization engaged forensic investigators, reset credentials, implemented MFA, and offered 12 months of credit monitoring.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_e6fe26f238ce6a8aMaine State AGfiled 2025-10-24Candidate
- bd_eee53516f5e3b92aIndiana State AGfiled 2025-10-24Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/health-palliative-services-treasure-coast-hospice-20251024.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 24, 2025
- Raw hash
- ff8dbe3d522f8725b6e34b424c7c32ef338d90c93d95ebca3f9761e70220a32f
Reporting entity
- Name
- Wilson, Elser, Moskowitz, Edelman & Dicker LLPnorm: wilson elser moskowitz edelman dicker
Victim entity
- Name
- Health & Palliative Services of the Treasure Coast, Inc.norm: health palliative services of the treasure coast
Incident
- Discovered
- Sep 25, 2024
- Materiality determined
- —
- Notification sent
- Oct 24, 2025
- Affected individuals
- 13,234
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTPHIHEALTH_BASICCREDENTIALS
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney General Consumer Protection Bureau
- Initial access
- phishing_link
Compliance
- Time to disclose
- 13 months(394 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.