Social EngineeringPhishingStolen CredentialsCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
The Good Life Medical Staff LLC
bd_ca0ca9ca537d79a4 · schema v1 · pii pii-v1
Full breach record for The Good Life Medical Staff LLC →The Good Life Medical Staff LLC, a travel nursing staffing agency, notified the Maryland Attorney General of a cybersecurity incident discovered on October 15, 2024. Unauthorized access to an employee email account likely exposed names, addresses, SSNs, driver's licenses, and health insurance info. One Maryland resident was affected. TGL engaged forensic investigators, enhanced security controls (MFA, 2FA), and offered 12 months of credit monitoring.
Maryland clock✗ MD AG >90d19 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_b392fa99705f2e8cIndiana State AGfiled 2025-03-03(3d gap)Verified
- bd_b3ee538832065e7cMontana State AGfiled 2025-03-03(3d gap)Candidate
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376436.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 28, 2025
- Raw hash
- 07b907f1d30459e03c90bac6a51ccbad9123ba1c9fae221a00631689322287ad
Reporting entity
- Name
- Wilson, Elser, Moskowitz, Edelman & Dicker LLPnorm: wilson elser moskowitz edelman dicker
Victim entity
- Name
- The Good Life Medical Staff LLCnorm: the good life medical staff
Incident
- Discovered
- Oct 15, 2024
- Materiality determined
- —
- Notification sent
- Mar 3, 2025
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified Maryland Office of the Attorney General
- Initial access
- phishing_link
Compliance
- Time to disclose
- 19 weeks(136 days from discovery to filing)
- Compliance flags
- MD AG >90d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.