HackingSupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_BASICLowContained
North East Medical Services Foundation
bd_8f92823183511bb7 · schema v1 · pii pii-v1
Full breach record for North East Medical Services Foundation →North East Medical Services detected unauthorized access to data on its third-party managed service provider, United Layer, on October 19, 2025. The investigation confirmed that certain individuals' first and last names may have been accessed. NEMS engaged forensic specialists, secured its environment, and is offering complimentary credit monitoring to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-618957
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 18, 2025
- Raw hash
- 94cc3f842093cd59fe4687cfbc86f2d0c161a86bb0ef6a59cf1c2132996b62bb
Reporting entity
- Name
- North East Medical Services Foundationnorm: north east medical
Victim entity
- Name
- North East Medical Services Foundationnorm: north east medical
Incident
- Discovered
- Oct 19, 2025
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- External
- Third party
- via United Layer
- Initial access
- supply_chain
Compliance
- Time to disclose
- 9 weeks(60 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.