Social EngineeringPhishingCustomer Data InvolvedData ExfiltratedPHIPIILowContained
Health & Palliative Services of the Treasure Coast, Inc.
bd_be9a61b0b4444307 · schema v1 · pii pii-v1
Full breach record for Health & Palliative Services of the Treasure Coast, Inc. →Health & Palliative Services of the Treasure Coast, Inc. notified consumers of a business email compromise incident discovered on February 27, 2024. The breach resulted in unauthorized access to decedents' Protected Health Information (PHI). The organization engaged forensic investigators and implemented security retraining and weekly scans. Affected individuals were offered 12 months of cyber monitoring services.
Vermont clock✗ VT AG >45 bday36 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_9ad66be7a56fa672Maine State AGfiled 2024-11-08Verified
- bd_b5c9d1d7c1100742Montana State AGfiled 2024-11-07(1d gap)Candidate
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-11-08-health-palliative-services-treasure-coast-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 8, 2024
- Raw hash
- 593010c5b6279f552fb5d9e1b446dd719d525e458107ba3ae0766ea9130574b6
Reporting entity
- Name
- Health & Palliative Services of the Treasure Coast, Inc.norm: health palliative services of the treasure coast
Victim entity
- Name
- Health & Palliative Services of the Treasure Coast, Inc.norm: health palliative services of the treasure coast
Incident
- Discovered
- Feb 27, 2024
- Materiality determined
- —
- Notification sent
- Nov 7, 2024
- Affected individuals
- Not disclosed
- Data types
- PHIPII
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1114 Email Collection
- Threat actor
- ExternalFinancial
- Initial access
- phishing_link
Compliance
- Time to disclose
- 36 weeks(255 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.