DisclosureLens
MISSOURIMalwareHealthcareHealthcareRansomwareData EncryptedRansom DemandedCustomer Data InvolvedHealth (basic)Identity (basic)Medium

Bluetail Medical Group

bd_d64ccf037244800f · schema v1 · pii pii-v1

Severity

Medium

Discovered

Aug 1, 2017

Filed

Aug 2, 2017

To disclose

≤1 day

Affected

11,000

Confidence

50%
Full breach record for Bluetail Medical Group

Bluetail Medical Group reported to HHS on 2017-08-02 a ransomware incident affecting 11000 individuals. The attack, discovered on August 1, 2017, involved ransomware encrypting a desktop computer containing patient x-ray images, names, and dates of birth. The attackers demanded a bitcoin payment for the decryption key.

HIPAA clock HHS report on time≤1 day discovery → filing
unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.

Incident timeline

discovery → filing · ≤1 day / 1 days

Aug 1, 2017

Discovered

Aug 2, 2017

Filed

vs. sector median

12 wks faster

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed11,000 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.