MedAltus, LLC
bd_bc7ea3921ae9360d · schema v1 · pii pii-v1
Full breach record for MedAltus, LLC →MedAltus, LLC notified the New Hampshire Attorney General of a data security incident where intruders accessed its ecommerce site starting May 3, 2016. The breach compromised customer names and credit card numbers via a script intercepting payment processor data. MedAltus engaged forensic investigators, reported to the Secret Service, and began notifying affected individuals (estimated 1 NH resident) on July 28, 2016.
J jump to incidentP pin to compareR raw source
Incident timeline
May 3, 2016
Begins
Aug 3, 2016
Filed
vs. sector median
+50 wks slower
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Montana State AGbd_fa1fc70d7767f0932016-07-29 · +5dCandidate
- Oregon State AGbd_8d89c27aeadf7dcc2016-08-24 · +21dVerified by operator
Filing propagation · 3 filings · 3 states
View merged incident ↗Pattern: first filing Jul 29 (MT), last Aug 24 (OR) — a 26-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.