DisclosureLens
HackingTechnologyHealthcareInformationVulnerability ExploitData ExfiltratedCustomer Data InvolvedPIIIdentity (basic)LowContained

PH TECH, LLC

bd_ee4a6fc951333f4a · schema v1 · pii pii-v1

Severity

Low

Discovered

Jun 2, 2023

Filed

Aug 11, 2023

To disclose

10 weeks

Affected

Not disclosed

Linked

8 filings

Confidence

64%
Full breach record for PH TECH, LLC

PH TECH notified New Hampshire residents of a data breach involving the MOVEit file transfer application. On May 30, 2023, attackers exploited a vulnerability in MOVEit to access personal information stored on PH TECH servers. PH TECH discovered the intrusion on June 2, 2023, took systems offline, and engaged forensic investigators. The breach exposed personal information of individuals associated with health plans served by PH TECH. PH TECH notified the FBI and Oregon State Police and offered free identity theft protection services to affected individuals.

Incident timeline

undetected · 3 days
discovery → filing · 10 weeks / 70 days

May 30, 2023

Begins

Jun 2, 2023

Discovered

Aug 11, 2023

Filed

vs. sector median

9 wks faster

This filing is one of 8 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (7) · sorted by filing gap

Show 3 more filingsup to 32d gap

Filing propagation · 8 filings · 7 states

View merged incident ↗

Pattern: first filing Jul 10 (WA), last Aug 16 (CA) — a 37-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.