MalwareRansomwareData EncryptedRansom DemandedEmployee Data InvolvedPIIIDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENTHighContained
CellNetix Pathology and Laboratories
bd_f4f4b8005e6fbff0 · schema v1 · pii pii-v1
Full breach record for CellNetix Pathology and Laboratories →CellNetix Pathology and Laboratories reported a ransomware attack discovered on December 10, 2023. The incident compromised employee PII including names, SSNs, and employment data. CellNetix engaged forensic investigators, secured the network, and offered credit monitoring to affected employees. The filing was submitted to the New Hampshire Attorney General on January 9, 2024.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_972311a26a471de1Washington State AGfiled 2024-01-10(1d gap)Verified
- bd_fc8aebd8cbf46b2aMaine State AGfiled 2024-01-10(1d gap)Candidate
- bd_960b6e35f292aa8cIndiana State AGfiled 2024-01-08(1d gap)Verified
- bd_af11f75a967e4f52Montana State AGfiled 2024-01-08(1d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/cellnetix-pathology-laboratories-20240109.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 9, 2024
- Raw hash
- e734135ec5fe16c050746ea1f1d467afa34398283a2246159af17eeedf0930c1
Reporting entity
- Name
- CellNetix Pathology and Laboratoriesnorm: cellnetix pathology and laboratories
Victim entity
- Name
- CellNetix Pathology and Laboratoriesnorm: cellnetix pathology and laboratories
Incident
- Discovered
- Dec 10, 2023
- Materiality determined
- Dec 19, 2023
- Notification sent
- Jan 8, 2024
- Affected individuals
- 1,000
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENTEMPLOYMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney General Consumer Protection Bureau
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 4 weeks(30 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.