AccidentalMisconfigurationData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICPHIMediumContained
Integrated Practice Solutions, Inc.
bd_f6a694b1620c0f1c · schema v1 · pii pii-v1
Full breach record for Integrated Practice Solutions, Inc. →Integrated Practice Solutions, Inc. (IPS) disclosed a data breach involving its SmartCloud platform on May 22, 2018. On February 1, 2018, IPS discovered that a configuration error exposed patient links containing PHI, PII, and SSNs. A forensic investigation confirmed one New Hampshire resident was affected. IPS notified the resident, engaged forensic investigators, added security layers, and offered one year of credit monitoring via TransUnion.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_4c5e587dedcd5a78Oregon State AGfiled 2018-05-21(1d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/integrated-practice-20180522.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 22, 2018
- Raw hash
- 8f344e6c98528ef8bcb206dc318f6e2d005c73f1a29cbf6b9ec9f1ae8e64ad5f
Reporting entity
- Name
- Integrated Practice Solutions, Inc.norm: integrated practice
Victim entity
- Name
- Integrated Practice Solutions, Inc.norm: integrated practice
Incident
- Discovered
- Feb 1, 2018
- Materiality determined
- —
- Notification sent
- May 22, 2018
- Affected individuals
- 1
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTHEALTH_BASICPHI
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
Compliance
- Time to disclose
- 16 weeks(110 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.