HackingCustomer Data InvolvedIDENTITY_GOVERNMENTHEALTH_BASICIDENTITY_BASICMediumContained
Couve Healthcare Consulting, LLC
bd_852f81a47d7f8bcf · schema v1 · pii pii-v1
Full breach record for Couve Healthcare Consulting, LLC →Couve Healthcare Consulting, LLC DBA Evergreen Healthcare Group (EHG) notified the New Hampshire Attorney General of a cybersecurity incident discovered on December 3, 2025, involving unauthorized access to its cloud-based healthcare platform. One New Hampshire resident was affected, with compromised data including Social Security Numbers, medical information, and names. EHG engaged forensic investigators, isolated systems, and offered 12 months of credit monitoring.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_b00abeed2ac58216HHS OCRfiled 2026-02-24Verified
- bd_e24eacec5374d80dIndiana State AGfiled 2026-02-24Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/couve-healthcare-consulting-evergreen-healthcare-group-20260224.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 24, 2026
- Raw hash
- 0036a12d583b6746fc6566f9de052b4caf53dffff46474bc3de548c0fff1fd81
Reporting entity
- Name
- Wilson, Elser, Moskowitz, Edelman & Dicker LLPnorm: wilson elser moskowitz edelman dicker
Victim entity
- Name
- Couve Healthcare Consulting, LLCnorm: couve healthcare consulting
Incident
- Discovered
- Dec 3, 2025
- Materiality determined
- —
- Notification sent
- Feb 24, 2026
- Affected individuals
- 1
- Data types
- IDENTITY_GOVERNMENTHEALTH_BASICIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- Notified New Hampshire Attorney General John M. Formella
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 12 weeks(83 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.