AccidentalMisdeliveryCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNTMediumContained
Adoptions From The Heart
bd_dc7616299cac9034 · schema v1 · pii pii-v1
Full breach record for Adoptions From The Heart →Adoptions From the Heart (AFTH) notified the Maryland AG that an internal adoption database was inadvertently indexed by search engines from April 17, 2024, to April 25, 2024. The incident involved 60 Maryland residents and exposed names, SSNs, medical/financial data, and driver's license numbers. No malicious activity was detected. AFTH secured the database, worked with search engines to remove indexes, and provided 1 year of credit monitoring to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed60 affectedView incident
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376247.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 13, 2025
- Raw hash
- 03b846fe077896566c44c5268832feadd6ef35b69b9dd76dbee22c33b23144ab
Reporting entity
- Name
- Mullen Coughlin LLCnorm: mullen coughlin
Victim entity
- Name
- Adoptions From The Heartnorm: adoptions from the heart
Incident
- Discovered
- Apr 25, 2024
- Materiality determined
- —
- Notification sent
- Jan 27, 2025
- Affected individuals
- 60
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICFINANCIAL_ACCOUNT
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
Compliance
- Time to disclose
- 19 months(567 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.