Carespring Health Care Management LLC
bd_bf7e6dc806de2ce9 · schema v1 · pii pii-v1
Full breach record for Carespring Health Care Management LLC →2 incidents on fileThreat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Noescape on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
We engage our patients on a personal level. Every patient in our communities is a part of our Carespring family. We get to know them-their stories, their families, what the...
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Nov 10, 2023
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Sitelockbit_3bd_1424aadc66b2163b2024-05-06 · +178dVerified by operator
Regulatory filings (9) · sorted by filing gap
- Illinois State AGbd_35ad741ba7e06c842024-08-01 · +265dVerified
- HHS OCRbd_5c6b4598c571c42c2024-08-15 · +279dVerified by operator
- Indiana State AGbd_707fbbefa9c132d82024-08-15 · +279dVerified by operator
- Vermont State AGbd_b1b6cf27a3455f122024-08-15 · +279dVerified by operator
Show 5 more filings ↓Show fewer ↑up to 305d gap
- Maine State AGbd_3515140b05c45d592024-08-16 · +280dVerified
- Massachusetts State AGbd_abe1869afcfdba212024-08-16 · +280dVerified
- New Hampshire State AGbd_c7f24252bf65f76b2024-08-19 · +283dVerified by operator
- Maine State AGbd_e21a0c9a61ebb45d2024-09-09 · +304dVerified
- Vermont State AGbd_e34bff3cc918e1472024-09-10 · +305dVerified
Showing first 10 of 12 linked disclosures.
Filing propagation · 10 filings · 7 states
View merged incident ↗Pattern: first filing Nov 10, last Sep 10 (VT) — a 305-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Cascade drawn from the first 10 linked disclosures of 12 — the full spread may be wider.
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
noescape
According to ransomware.live, NoEscape was a RaaS operation active from May to December 2023 believed to be a rebrand of the defunct Avaddon ransomware, targeting professional services, manufacturing, and healthcare with triple-extortion capabilities (encryption, data theft, and optional DDoS), before abruptly shutting down in an apparent exit scam.