MalwareRansomwareCapture Stored DataData ExfiltratedData EncryptedRansom DemandedCustomer Data InvolvedEmployee Data InvolvedPIIIDENTITY_BASICEMPLOYMENTLowContained
The Heritage Group
bd_f6b40526dbd3c706 · schema v1 · pii pii-v1
Full breach record for The Heritage Group →The Heritage Group reported a ransomware incident detected on January 17, 2023. The threat actor exfiltrated data before the network was secured. Compromised data included PII of current, former, and prospective employees and their dependents across 33 states. The company engaged forensic investigators and offers 24 months of credit monitoring.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_0ba03555353b0eb4Maine State AGfiled 2023-05-16Verified
- bd_944e292090c77566Montana State AGfiled 2023-05-15(1d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/heritage-group-20230516.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 16, 2023
- Raw hash
- 001835da7b9a665d54386c66f20d5a805040fa85d91e4a693491c2b9b4050ca7
Reporting entity
- Name
- The Heritage Groupnorm: the heritage
Victim entity
- Name
- The Heritage Groupnorm: the heritage
Incident
- Discovered
- Jan 17, 2023
- Materiality determined
- Apr 19, 2023
- Notification sent
- May 1, 2023
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICEMPLOYMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 17 weeks(119 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.