HackingCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTPHIHEALTH_BASICMediumContained
Tarleton Medical
bd_d2c41c9b179e5922 · schema v1 · pii pii-v1
Full breach record for Tarleton Medical →Tarleton Medical experienced an unauthorized access incident affecting patient medical records. On January 6, 2017, the organization learned of the incident and disabled server access. A forensic investigation confirmed unauthorized access to computer systems and potential access to patient records containing names, addresses, dates of birth, Social Security numbers, and health care claims information. The company engaged a digital forensics firm, notified the FBI, and offered 12 months of credit and identity monitoring to affected individuals.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_f0b7be1ed7aeb324HHS OCRfiled 2017-03-06(3d gap)Verified by operator
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-66848
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 9, 2017
- Raw hash
- 99bbf835bb1ac8c9066ce5806508a1e43cb55dda69a034782f6584cc41e50042
Reporting entity
- Name
- Tarleton Medicalnorm: tarleton medical
Victim entity
- Name
- Tarleton Medicalnorm: tarleton medical
Incident
- Discovered
- Jan 6, 2017
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTPHIHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Reported the matter to the Federal Bureau of Investigation
Compliance
- Time to disclose
- 9 weeks(62 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.