MalwareRansomwareStolen CredentialsData ExfiltratedRansom DemandedBusiness Associate (HIPAA)Downstream VictimsCustomer Data InvolvedTargetedPIIFINANCIAL_ACCOUNTIDENTITY_BASICLowContained
The Medibase Group, Inc.
bd_e7b512c7209a0428 · schema v1 · pii pii-v1
Full breach record for The Medibase Group, Inc. →Medibase Group, Inc., a business associate for healthcare providers, disclosed a ransomware incident affecting 2 New Hampshire residents. The breach occurred around Jan 26, 2024, and was detected on Jan 29, 2024. PII and financial data were accessed. Medibase contained the threat, recovered encryption keys, and provided credit monitoring to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed2 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/medibase-group-20240724.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 24, 2024
- Raw hash
- caa15b470cb2c0bcaf97678df3a62e13dc7a6972f4f28b3ebc6c832955ac6388
Reporting entity
- Name
- The Medibase Group, Inc.norm: the medibase
Victim entity
- Name
- The Medibase Group, Inc.norm: the medibase
Incident
- Discovered
- Jan 29, 2024
- Materiality determined
- May 28, 2024
- Notification sent
- Jul 24, 2024
- Affected individuals
- 2
- Data types
- PIIFINANCIAL_ACCOUNTIDENTITY_BASIC
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney Generalreported this incident to U.S. federal law enforcement
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 25 weeks(177 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.