HackingStolen CredentialsCustomer Data InvolvedData ExfiltratedPIIIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Continuum Health Alliance
bd_c33c3f11f79dba5e · schema v1 · pii pii-v1
Full breach record for Continuum Health Alliance →Continuum Health Alliance, LLC, a healthcare management services provider, disclosed an unauthorized access incident affecting 31 New Hampshire residents. The unauthorized actor accessed systems between October 18-19, 2023. Personal information, including government IDs, was involved. Continuum notified law enforcement, HHS, and credit bureaus, and offered identity theft protection guidance.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_573f2fd8faa2ee63Vermont State AGfiled 2024-08-21Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/continuum-health-alliance-20240821.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 21, 2024
- Raw hash
- 14124ef65388bd0bf9b57f4e86efcb9a61dfdce013f55151fc10eaf667fb3197
Reporting entity
- Name
- Continuum Health Alliancenorm: continuum health alliance
Victim entity
- Name
- Continuum Health Alliancenorm: continuum health alliance
Incident
- Discovered
- Oct 19, 2023
- Materiality determined
- Aug 14, 2024
- Notification sent
- Aug 21, 2024
- Affected individuals
- 31
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified federal law enforcementNotified applicable regulators as required, including the U.S. Department of Health and Human ServicesProvided written notice to relevant state and federal regulatorsNotified the three major credit reporting agencies, Equifax, Experian, and TransUnion
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 44 weeks(307 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.