Cummins Behavioral Health Systems, Inc.
bd_85f75d0b4e2ffc40 · schema v1 · pii pii-v1
Full breach record for Cummins Behavioral Health Systems, Inc. →2 incidents on fileCummins Behavioral Health Systems, Inc. reported a ransomware incident to the New Hampshire Attorney General. Unauthorized activity occurred between Feb 2 and Mar 9, 2023. The company discovered a ransom note on Mar 9, 2023, but no data was encrypted. Personal information of 3 NH residents was potentially impacted. Notifications were mailed on Aug 1, 2023, offering credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 2, 2023
Begins
Mar 9, 2023
Discovered
Aug 18, 2023
Filed
vs. sector median
+11 wks slower
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Massachusetts State AGbd_966eb0e320fa7b3f2023-08-11 · +7dVerified
- Indiana State AGbd_ad529a22dc139b622023-08-11 · +7dVerified
- Maine State AGbd_c116fec9cb9a87422023-08-11 · +7dCandidate
- Montana State AGbd_d278e5a5721ec1612023-08-11 · +7dCandidate
Filing propagation · 5 filings · 5 states
View merged incident ↗Pattern: first filing Aug 11 (MA), last Aug 18 (NH) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.