HackingData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICPHIMediumContained
Michigan Avenue Immediate Care
bd_7d1fbcc18ec50aa8 · schema v1 · pii pii-v1
Full breach record for Michigan Avenue Immediate Care →Michigan Avenue Immediate Care reported a cybersecurity incident occurring between April 10, 2022, and May 1, 2022. An unauthorized third party gained access to the network and obtained files containing personal information, including names, addresses, SSNs, driver's license numbers, and health/treatment information. The incident was contained, and forensic investigators were retained. Affected individuals were offered one-year identity protection services through Experian.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_ad4cab7e46c45393Maine State AGfiled 2022-08-18Verified
- bd_bcbfc45d63cad106Oregon State AGfiled 2022-08-18Verified
- bd_461c5e3ac0eb9651Maine State AGfiled 2022-06-30(49d gap)Verified
- bd_46ffb5a07fa7b176Oregon State AGfiled 2022-06-30(49d gap)Verified
Show 2 more filings ↓Show fewer ↑up to 49d gap
- bd_7ad65124fdd32a4bHHS OCRfiled 2022-06-30(49d gap)Verified
- bd_ee4a03a44034b356California State AGfiled 2022-06-30(49d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-556353
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 18, 2022
- Raw hash
- 2a102c46ba88dd0c1dbc857417b96bbeec216d5dc9bd669ae220b7cddff7ddd2
Reporting entity
- Name
- Michigan Avenue Immediate Carenorm: michigan avenue immediate care
Victim entity
- Name
- Michigan Avenue Immediate Carenorm: michigan avenue immediate care
Incident
- Discovered
- May 1, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICPHI
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 16 weeks(109 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.