HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
OraSure Technologies, Inc.
bd_da976f411163d414 · schema v1 · pii pii-v1
Full breach record for OraSure Technologies, Inc. →OraSure Technologies, Inc. notified consumers of a data breach involving unauthorized access to personal information. The notice, filed with the Vermont Attorney General on July 9, 2024, references impacted residents in multiple states including Vermont, Maryland, New York, and Rhode Island. Affected data includes identity information such as names and government IDs. The company engaged TransUnion for consumer support and stated there is no evidence of misuse.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_ab9328e9ee859650Indiana State AGfiled 2024-07-09Verified
- bd_fcad5a27e32da295SEC 8-Kfiled 2024-04-12(88d gap)Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-07-09-orasure-technologies-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 9, 2024
- Raw hash
- 07e8996efe3f217fafe964730c6cd10017e207891a122420fd3f51f2180c53fb
Reporting entity
- Name
- OraSure Technologies, Inc.norm: orasure technologies
- Domain
- orasure.com
Victim entity
- Name
- OraSure Technologies, Inc.norm: orasure technologies
- Domain
- orasure.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jul 9, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.