MalwareRansomwareData EncryptedData ExfiltratedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICMediumContained
Fairfax Oral and Maxillofacial Surgery
bd_cd34df02272ee4ab · schema v1 · pii pii-v1
Full breach record for Fairfax Oral and Maxillofacial Surgery →Fairfax Oral and Maxillofacial Surgery reported a supplemental data security incident to the New Hampshire Attorney General on October 12, 2023. The incident, occurring May 15-16, 2023, involved ransomware encryption of systems. No evidence of data acquisition was found, but patient PII (names, SSNs, driver's licenses, health info) was on encrypted systems. 33 NH residents were notified. FOMS engaged law enforcement and forensic investigators.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_a3ef06b743dbf4b3Maine State AGfiled 2023-10-12(1d gap)Verified by operator
- bd_9606cba0447075dcMaine State AGfiled 2023-08-22(52d gap)Candidate
- bd_a6a1a00b18329708New Hampshire State AGfiled 2023-08-22(52d gap)Verified
- bd_d9a83af915c96720Montana State AGfiled 2023-08-22(52d gap)Candidate
Show 1 more filing ↓Show fewer ↑up to 91d gap
- bd_5d1869a4dbd9a400HHS OCRfiled 2023-07-14(91d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/fairfax-oral-maxillofacial-surgery-20231013.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 13, 2023
- Raw hash
- a0acafd871d04b755b3b2133dda782d5e14209573973004b9ee10891265de0b1
Reporting entity
- Name
- Fairfax Oral and Maxillofacial Surgerynorm: fairfax oral and maxillofacial surgery
Victim entity
- Name
- Fairfax Oral and Maxillofacial Surgerynorm: fairfax oral and maxillofacial surgery
Incident
- Discovered
- May 16, 2023
- Materiality determined
- —
- Notification sent
- Aug 18, 2023
- Affected individuals
- 33
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 21 weeks(150 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.