HackingHealthcareHealthcareCapture Stored DataData ExfiltratedEmployee Data InvolvedDelayed DiscoveryPIIIDENTITY_GOVERNMENTMediumContained
HIGH POINT TREATMENT CENTER, INC.
bd_b3de2cc3596517b8 · schema v1 · pii pii-v1
Full breach record for HIGH POINT TREATMENT CENTER, INC. →High Point Treatment Center, Inc., a healthcare organization based in New Bedford, MA, reported an external network breach occurring between June 17 and July 6, 2025, discovered on July 16, 2025. An unauthorized individual may have viewed and copied personal information—including names, Social Security numbers, and dates of birth—of current and prospective employees. Four Maine residents were among the 4,613 individuals affected. Cyberscout/TransUnion credit monitoring (24 months) was offered.
Maine clockDiscovered Jul 16, 2025 → Filed with AG Jul 29, 202513d ✓ ME AG ≤30d13 days discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Ransomware claims (1)
- bd_f980f192f224c84eLeak Siteabyssfiled 2025-07-26(3d gap)Verified
Regulatory filings (2) · sorted by filing gap
- bd_612ba6f390f521fdNew Hampshire State AGfiled 2025-08-05(7d gap)Verified
- bd_b9e7bee38cf6f463HHS OCRfiled 2026-01-30(185d gap)Verified
Source provenance
- Source URL
- https://www.maine.gov/agviewer/content/ag/985235c7-cb95-4be2-8792-a1252b4f8318/dd5b9021-3735-4774-9693-ccc531e86e30.html
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 29, 2025
- Raw hash
- 91ef4ec8128d9232d834842048c6e828611029507b9f5f9a066a24cb5375e9c0
Reporting entity
- Name
- HIGH POINT TREATMENT CENTER, INC.norm: high point treatment center
- Domain
- hptc.org
- Industry
- Healthcare
Victim entity
- Name
- HIGH POINT TREATMENT CENTER, INC.norm: high point treatment center
- Domain
- hptc.org
- Industry
- Healthcare
- Industry
- Healthcarellm
Incident
- Discovered
- Jul 16, 2025
- Materiality determined
- —
- Notification sent
- Jul 29, 2025
- Affected individuals
- 4
- Data types
- PIIIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- External
Compliance
- Time to disclose
- 13 days(13 days from discovery to filing)
- Compliance flags
- ME AG ≤30d · 13d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status Maine Discovered: Jul 16, 2025→ Filed with AG: Jul 29, 202513d 30 days ME AG ≤30d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.