MalwareRansomwareSupply Chain (3P Vendor)Data ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumResolved
LIFELONG MEDICAL CARE
bd_a2e73cbc0dbc19e5 · schema v1 · pii pii-v1
Full breach record for LIFELONG MEDICAL CARE →LifeLong Medical Care notified customers that a ransomware attack on third-party vendor Netgain resulted in unauthorized access to files containing full names and Social Security Numbers. Netgain discovered anomalous activity on November 24, 2020, and determined files were accessed by February 25, 2021. LifeLong Medical Care confirmed the involvement of customer data on August 9, 2021, and offered one year of complimentary credit monitoring.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_b8d43a349c42bd35Montana State AGfiled 2021-08-24(3d gap)Candidate
- bd_375760f91189226bOregon State AGfiled 2021-09-07(11d gap)Verified by operator
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-544328
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 27, 2021
- Raw hash
- b260ccaa9223eed7a6708113c1bcfc0251fb4b9bcbb34cb95fe1335e1c8f49d2
Reporting entity
- Name
- LIFELONG MEDICAL CAREnorm: lifelong medical care
Victim entity
- Name
- LIFELONG MEDICAL CAREnorm: lifelong medical care
Incident
- Discovered
- Aug 9, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Third party
- via Netgain
Compliance
- Time to disclose
- 18 days(18 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.