HackingStolen CredentialsRansomwareData EncryptedTargetedIDENTITY_BASICHEALTH_BASICIDENTITY_GOVERNMENTMediumContained
Mowery Clinic LLC
bd_ee68dd3c7cb28384 · schema v1 · pii pii-v1
Full breach record for Mowery Clinic LLC →Mowery Clinic, a healthcare provider in Salina, Kansas, notified patients of a cybersecurity attack discovered on September 14, 2021. An unauthorized individual gained access to the network, deployed malware, and accessed documents containing patient PII and PHI. Affected data included names, addresses, DOBs, medical records, and some SSNs. The clinic engaged forensic investigators and secured its network.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_0f375d7ebe149bfaMaine State AGfiled 2021-11-02(7d gap)Verified
- bd_79d3a0ce4fe3e252Montana State AGfiled 2021-11-02(7d gap)Candidate
Source provenance
- Source URL
- https://consumer.sc.gov/sites/consumer/files/Documents/Business%20Resources%20Laws/Related%20Laws/Breaches/2021/MoweryClinic.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 9, 2021
- Raw hash
- 7663b2180f63362a17cea412928c199f88e7bbeafd0e05986f5c272d4c16816f
Reporting entity
- Name
- Mowery Clinic LLCnorm: mowery clinic
Victim entity
- Name
- Mowery Clinic LLCnorm: mowery clinic
Incident
- Discovered
- Sep 14, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICHEALTH_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 8 weeks(56 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.