HackingProfessional ServicesHealthcareProfessional ServicesCapture Stored DataSupply Chain (3P Vendor)Data ExfiltratedCustomer Data InvolvedMulti-Stage ChainPIIIDENTITY_BASICLowContained
ALN Medical Management, LLC
bd_845ac8d93490851f · schema v1 · pii pii-v1
Full breach record for ALN Medical Management, LLC →ALN Medical Management, LLC, a revenue cycle and billing services firm, identified suspicious activity in March 2024 related to systems hosted by a third-party service provider. An unauthorized actor accessed or took files and folders from the third-party hosted environment between March 18-24, 2024. Internal ALN systems were not impacted. Affected individuals' personal information was involved. Approximately 245 Rhode Island residents may be impacted.
This filing is one of 7 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- bd_26ee976fd78349d6Vermont State AGfiled 2025-03-21Verified
- bd_874b92a535bb2b2cNew Hampshire State AGfiled 2025-03-21Verified
- bd_3b44a23e3b496218Montana State AGfiled 2025-04-21(31d gap)Candidate
- bd_328d955c2bb8f071New Hampshire State AGfiled 2025-05-23(63d gap)Verified
Show 2 more filings ↓Show fewer ↑up to 63d gap
- bd_95a74008c0f7575dWashington State AGfiled 2025-05-23(63d gap)Verified
- bd_dc4b4e0126c62d83California State AGfiled 2025-05-23(63d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-600260
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 21, 2025
- Raw hash
- dc7a6188dcef9725c81ac0f35b6420c577eaf2f86dec6357bd899e22f10b6541
Reporting entity
- Name
- ALN Medical Management, LLCnorm: aln medical management
Victim entity
- Name
- ALN Medical Management, LLCnorm: aln medical management
- Industry
- Professional ServicesllmHealthcarellm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 245
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1530 Data from Cloud Storage ObjectT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Reported incident to law enforcement and regulators
- Initial access
- supply_chain
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.