HackingStolen CredentialsCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICHEALTH_BASICLowContained
Merritt Healthcare Advisors
bd_d9a9b56c70539fb8 · schema v1 · pii pii-v1
Full breach record for Merritt Healthcare Advisors →Merritt Healthcare Advisors reported that an unauthorized actor accessed an employee's email account between July 30, 2022, and August 25, 2022. The incident involved personal information including names and potentially medical information. The company secured the account, engaged external cybersecurity professionals, and notified affected individuals and data owners. No evidence of misuse was found.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_f0e65cfa063cb114New Hampshire State AGfiled 2023-03-20Verified
- bd_1d3c5b12a75d08b6HHS OCRfiled 2023-03-15(5d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-564568
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 20, 2023
- Raw hash
- 4ce93def52a12453eabbefa46ade4697d80df422b8f594785ba3079d97b0d461
Reporting entity
- Name
- Merritt Healthcare Advisorsnorm: merritt healthcare advisors
Victim entity
- Name
- Merritt Healthcare Advisorsnorm: merritt healthcare advisors
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Mar 20, 2023
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICHEALTH_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.