HackingHealthcareHealthcareStolen CredentialsCapture App DataData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIALMediumContained
University of Connecticut Health Center
bd_84a7325b1ea53fac · schema v1 · pii pii-v1
Full breach record for University of Connecticut Health Center →UConn Health notified affected individuals of unauthorized access to a limited number of employee email accounts between August 20–27, 2018. The investigation determined on December 24, 2018 that the accounts contained personal information including names, SSNs, addresses, dates of birth, driver's license numbers, and medical information. Approximately 504 Rhode Island residents were affected. UConn Health secured accounts, notified law enforcement, and retained a forensic security firm.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_61139883b8bd4f40Montana State AGfiled 2019-02-21(1d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-144949
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 22, 2019
- Raw hash
- c187b2d09b977f1d70df595a0bf01f3b0d867a36c6fc3a43ed399470c89502ff
Reporting entity
- Name
- University of Connecticut Health Centernorm: university of connecticut health center
Victim entity
- Name
- University of Connecticut Health Centernorm: university of connecticut health center
- Industry
- Healthcarellm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 504
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.