HackingVulnerability ExploitData ExfiltratedCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
STANFORD HEALTH CARE
bd_d56e175cb47d0837 · schema v1 · pii pii-v1
Full breach record for STANFORD HEALTH CARE →Welltok, Inc. notified Stanford Health Care and its affiliates of a breach involving the MOVEit Transfer server. An unknown actor exploited software vulnerabilities to access the server on May 30, 2023, and exfiltrated data. Welltok discovered the breach on August 11, 2023, and began notifying approximately 6 New Hampshire residents on November 17, 2023. Response included credit monitoring via Experian and enhanced privacy policies.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed6 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/welltok-20231121.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 21, 2023
- Raw hash
- 7ac81bbb93badd89b79037713c18f97fdee5a5f9cedb3a86d0e5b494096b2e10
Reporting entity
- Name
- Welltoknorm: welltok
- Domain
- welltok.com
Victim entity
- Name
- STANFORD HEALTH CAREnorm: stanford health care
Incident
- Discovered
- Aug 11, 2023
- Materiality determined
- —
- Notification sent
- Nov 17, 2023
- Affected individuals
- 6
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 15 weeks(102 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.