HackingData ExfiltratedPIIPHIIDENTITY_BASICLowContained
Aria Care Partners
bd_c0b571d26b88ea3c · schema v1 · pii pii-v1
Full breach record for Aria Care Partners →Aria Care Partners notified consumers on Jan 19, 2024, of a data breach detected May 12, 2023. An unknown actor gained unauthorized access to a vision file server, potentially exposing names and protected health information. The company engaged forensic investigators, reported to the FBI, and offered credit monitoring.
Vermont clock✗ VT AG >45 bday36 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 5 about the same incident.View merged incident
A leak claim by trigona about this victim predates this filing by 110 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_a05b5d14ac85a035Leak Sitetrigonafiled 2023-10-01(110d gap)Verified by operator
Regulatory filings (3) · sorted by filing gap
- bd_0ac192247be913c6Indiana State AGfiled 2024-01-19Verified
- bd_686e59edee7ed95fMontana State AGfiled 2024-01-19Verified by operator
- bd_4744f1684e86a7b8HHS OCRfiled 2023-07-11(192d gap)Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-01-19-aria-care-partners-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 19, 2024
- Raw hash
- ed5ba3eec317332a0c8118e1c96de23d7ff064cce1c96acafb36f0b76ee507e3
Reporting entity
- Name
- Aria Care Partnersnorm: aria care
- Domain
- ariacarepartners.com
Victim entity
- Name
- Aria Care Partnersnorm: aria care
- Domain
- ariacarepartners.com
Incident
- Discovered
- May 12, 2023
- Materiality determined
- —
- Notification sent
- Jan 19, 2024
- Affected individuals
- Not disclosed
- Data types
- PIIPHIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1119 Automated Collection
- Threat actor
- External
- Regulator citations
- reported the incident to the Federal Bureau of Investigation
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 36 weeks(252 days from discovery to filing)
- Compliance flags
- VT AG >45 bdayLeak >90d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.