INFOSYS MCCAMISH SYSTEMS, LLC
bd_bf7aea3b027e4b99 · schema v1 · pii pii-v1
Full breach record for INFOSYS MCCAMISH SYSTEMS, LLC →Infosys McCamish Systems, LLC (IMS) disclosed a ransomware incident affecting 10,609 Delaware residents. The breach occurred between October 29 and November 2, 2023, when IMS systems were encrypted. IMS, a data processor, notified the Delaware Attorney General on June 27, 2024. The incident involved unauthorized access and acquisition of personal data including SSNs, medical records, biometric data, and financial information. IMS engaged third-party forensic and eDiscovery experts, notified law enforcement, and contained the incident. Affected individuals were offered 24 months of credit monitoring via Kroll.
Linked disclosures
Why this link?Regulatory filings (10) · sorted by filing gap
- bd_118ac386a65120dfWashington State AGfiled 2024-06-27Candidate
- bd_3c00e95f3727fd47Vermont State AGfiled 2024-06-27Verified
- bd_4cf04db073068a7fMontana State AGfiled 2024-06-27Verified
- bd_cc7b7300d54b61e2Oregon State AGfiled 2024-06-27Verified
Show 6 more filings ↓Show fewer ↑up to 74d gap
- bd_113d2318c13a1bf9California State AGfiled 2024-06-28(1d gap)Verified
- bd_8df9b1b9b6a5a176California State AGfiled 2024-07-19(22d gap)Verified
- bd_4f0f0f3fd5c44be8Maine State AGfiled 2024-08-13(47d gap)Verified
- bd_09a55fdd2bbb246aCalifornia State AGfiled 2024-08-15(49d gap)Verified
- bd_2c639b79e4797456California State AGfiled 2024-09-09(74d gap)Verified
- bd_e4f30fd83097d2eaMaine State AGfiled 2024-09-09(74d gap)Verified
Showing first 10 of 12 linked disclosures.
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2024/07/Delaware-Exhibit-1.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 27, 2024
- Raw hash
- 7786ab7c2a290ff36925b6a67f61c2aa4828b5c4a482f3ae9c65f15f7648148f
Reporting entity
- Name
- INFOSYS MCCAMISH SYSTEMS, LLCnorm: infosys mccamish
- Domain
- infosysbpm.com
Victim entity
- Name
- INFOSYS MCCAMISH SYSTEMS, LLCnorm: infosys mccamish
- Domain
- infosysbpm.com
Incident
- Discovered
- Nov 2, 2023
- Materiality determined
- —
- Notification sent
- Jun 27, 2024
- Affected individuals
- 10,609
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICBIOMETRICCREDENTIALSFINANCIAL_ACCOUNTAUTHENTICATION
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified the Delaware Attorney General's Office
Compliance
- Time to disclose
- 34 weeks(238 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.