HackingCapture Stored DataData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICMediumContained
Central Kentucky Radiology
bd_d127d7de82e62197 · schema v1 · pii pii-v1
Full breach record for Central Kentucky Radiology →Central Kentucky Radiology notified the New Hampshire Attorney General of a data event affecting 8 NH residents. Unauthorized access occurred between Oct 16-18, 2024, when files were copied. Patient PII (name, SSN, DOB) and PHI were exposed. CKR notified law enforcement, provided 12 months of credit monitoring, and implemented additional security safeguards. Notice sent June 12, 2025.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_f7c3985492f82e8fIndiana State AGfiled 2025-06-12Verified
- bd_79d161e0ab3235ebMaine State AGfiled 2025-06-13(1d gap)Verified
- bd_773381a9fbb856f8Vermont State AGfiled 2025-06-11(1d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/central-kentucky-radiology-20250612.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 12, 2025
- Raw hash
- 899ab0fd88803309749707d8ac4800ec48b1830020ac421357887c3995e771ff
Reporting entity
- Name
- Mullen Coughlin LLCnorm: mullen coughlin
Victim entity
- Name
- Central Kentucky Radiologynorm: central kentucky radiology
Incident
- Discovered
- Oct 18, 2024
- Materiality determined
- —
- Notification sent
- Jun 12, 2025
- Affected individuals
- 8
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1119 Automated Collection
- Threat actor
- External
- Regulator citations
- Providing written notice of this incident to relevant state regulators, as necessary
Compliance
- Time to disclose
- 34 weeks(237 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.