DisclosureLens
PhysicalHealthcareHealthcareTheftCustomer Data InvolvedGovernment IDIdentity (basic)MediumContained

Concord Regional Visiting Nurse Association

bd_80d0975599d6ec72 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Filed

Apr 18, 2008

To disclose

Affected

15state residents only

Confidence

65%
Full breach record for Concord Regional Visiting Nurse Association

Concord Regional Visiting Nurse Association notified the NH Attorney General's office on April 18, 2008, regarding the theft of a laptop from a staff vehicle on April 16, 2008. The theft compromised personal information, including birth dates and Social Security numbers, for 15 clients. The organization notified law enforcement and directly contacted affected clients, providing guidance on fraud alerts and credit monitoring. The risk of identity theft was assessed as low due to multiple layers of encryption and password protection on the device.

Incident timeline

Apr 16, 2008

Begins

Apr 18, 2008

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed15 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.