HackingData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASICMediumContained
HCF of Washington Inc
bd_ce9cc64ffcb2ab8e · schema v1 · pii pii-v1
Full breach record for HCF of Washington Inc →HCF of Washington Inc. (operating as Court House Manor) reported a cybersecurity incident to the Maryland Attorney General on January 10, 2025. An unauthorized third party gained access to the management company's computer systems starting September 17, 2024. The incident affected one Maryland resident, exposing personal information including name, date of birth, Social Security number, financial account number, and medical/insurance information. The victim was notified on January 9, 2025, and offered credit monitoring services.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1 affectedView incident
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376173.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 13, 2025
- Raw hash
- 5fa86ee6aea52d33ccc85fd87515b24cd0c62aa6d190f33c91ab1f388ef3d2e5
Reporting entity
- Name
- Polsinelli PCnorm: polsinelli
Victim entity
- Name
- HCF of Washington Incnorm: hcf of washington
Incident
- Discovered
- Oct 3, 2024
- Materiality determined
- —
- Notification sent
- Jan 9, 2025
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified Maryland Office of the Attorney General
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 14 months(406 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.