HackingData ExfiltratedCustomer Data InvolvedPHIHEALTH_BASICFINANCIAL_ACCOUNTIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
Medusind, Inc.
bd_e16e595df9c8d7ed · schema v1 · pii pii-v1
Full breach record for Medusind, Inc. →Medusind, Inc., a revenue cycle management company, experienced a cyber incident on December 29, 2023, where unauthorized access to files containing personal health, financial, and government identification information occurred. The company discovered the suspicious activity on the same day, took systems offline, and engaged forensic investigators. Evidence suggests data was exfiltrated. Affected individuals are offered two years of identity monitoring.
This filing is one of 9 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- bd_bef150eaeee5f6b3Oregon State AGfiled 2025-02-11Verified
- bd_e8a96821895972c9Washington State AGfiled 2025-02-11Verified
- bd_166adc1614e76acdDelaware State AGfiled 2025-01-07(35d gap)Verified
- bd_44842e5c901da36aCalifornia State AGfiled 2025-01-07(35d gap)Verified
Show 4 more filings ↓Show fewer ↑up to 35d gap
- bd_4c0617bdd3903364Indiana State AGfiled 2025-01-07(35d gap)Verified
- bd_853cd6d42e42a889Oregon State AGfiled 2025-01-07(35d gap)Candidate
- bd_c91dd71a3986d50cHHS OCRfiled 2025-01-07(35d gap)Verified
- bd_e7e2fd3d471ae780Maine State AGfiled 2025-01-07(35d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-598553
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 11, 2025
- Raw hash
- d19888353a7ed0ae34d0860c801e8f2eb62e8189f8204a585eae4b967f3c777a
Reporting entity
- Name
- Medusind, Inc.norm: medusind
Victim entity
- Name
- Medusind, Inc.norm: medusind
Incident
- Discovered
- Dec 29, 2023
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PHIHEALTH_BASICFINANCIAL_ACCOUNTIDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Unknown
- MITRE ATT&CK
- T1041 Exfiltration Over C2 Channel
- Threat actor
- External
Compliance
- Time to disclose
- 14 months(410 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.