MalwareRansomwareData EncryptedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTPHIHEALTH_BASICMediumContained
Maternal and Family Health Services
bd_a8ce7b5233375eeb · schema v1 · pii pii-v1
Full breach record for Maternal and Family Health Services →Maternal and Family Health Services experienced a ransomware incident between August 21, 2021, and April 4, 2022. The organization discovered the incident on April 4, 2022. Compromised data may include names, addresses, dates of birth, Social Security numbers, driver's license numbers, financial account/payment card information, medical information, and health insurance information. The company engaged a national cybersecurity firm and is offering credit monitoring services.
California clockDiscovered Apr 4, 2022 → Notified Jan 3, 2023274d ✗ CA 60-day late40 weeks discovery → filing
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_92fcf80f1a78c010Maine State AGfiled 2023-01-10Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-561479
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 10, 2023
- Raw hash
- b284bdc1a7c3852cdfef9ff0d8fed0d6bbfddbdb5b2cb12df8b38c1dc2df1cd4
Reporting entity
- Name
- Maternal and Family Health Servicesnorm: maternal and family health
Victim entity
- Name
- Maternal and Family Health Servicesnorm: maternal and family health
Incident
- Discovered
- Apr 4, 2022
- Materiality determined
- —
- Notification sent
- Jan 3, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTPHIHEALTH_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 40 weeks(281 days from discovery to filing)
- Compliance flags
- CA 60-day late · 274d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Apr 4, 2022→ Notified: Jan 3, 2023274d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.