HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Carespring Health Care Management LLC
bd_b1b6cf27a3455f12 · schema v1 · pii pii-v1
Full breach record for Carespring Health Care Management LLC →Carespring Health Care Management notified consumers of a data breach involving unauthorized access to personal information. Affected data included names, addresses, Social Security numbers, and financial account numbers. The company offered 12 months of credit monitoring and identity theft restoration services through Kroll.
Leak gap clock✗ Leak >180d
⚠ no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
This filing is one of 7 about the same incident.View merged incident
A leak claim by hunters_international about this victim predates this filing by 292 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (2)
- bd_887aaa3e9b883362Leak Sitehunters_internationalfiled 2024-02-10(186d gap)Verified by operator
- bd_bf7e6dc806de2ce9Leak Sitenoescapefiled 2023-11-10(279d gap)Verified
Regulatory filings (4) · sorted by filing gap
- bd_3515140b05c45d59Maine State AGfiled 2024-08-16(1d gap)Verified
- bd_c7f24252bf65f76bNew Hampshire State AGfiled 2024-08-19(4d gap)Verified
- bd_e21a0c9a61ebb45dMaine State AGfiled 2024-09-09(25d gap)Verified
- bd_e34bff3cc918e147Vermont State AGfiled 2024-09-10(26d gap)Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-08-15-carespring-health-care-management-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 15, 2024
- Raw hash
- 7115aaf7e77c32a0023832731ddd2a3e87859523c34b3fe32431d831790ad63f
Reporting entity
- Name
- Carespring Health Care Management LLCnorm: carespring health care management
- Domain
- carespring.com
Victim entity
- Name
- Carespring Health Care Management LLCnorm: carespring health care management
- Domain
- carespring.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Aug 15, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Compliance flags
- Leak >180d
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.