DisclosureLens
HackingHealthcareHealthcareData ExfiltratedCustomer Data InvolvedIdentity (basic)Government IDHealth (basic)PHIMediumContained

Asheville Eye Associates, PLLC

bd_fc537b3102571495 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Nov 18, 2024

Filed

Jun 13, 2025

To disclose

30 weeks

Affected

21state residents only

Linked

11 filings

Confidence

67%
Full breach record for Asheville Eye Associates, PLLC

Asheville Eye Associates, PLLC detected unauthorized network access on November 18, 2024. An unauthorized party acquired files containing personal information, including names, addresses, Social Security Numbers, medical treatment information, and health insurance information. Approximately 21 New Hampshire residents were affected. The organization engaged third-party specialists, contained the access, and is providing credit monitoring services.

Leak gap clock Leak >180d30 weeks discovery → filing

Incident timeline

discovery → filing · 30 weeks / 207 days

Nov 18, 2024

Discovered

Jun 13, 2025

Filed

vs. sector median

+18 wks slower

This filing is one of 11 about the same incident.View merged incident

Linked disclosures

Why this link?

Ransomware claims (2)

Regulatory filings (8) · sorted by filing gap

Show 4 more filingsup to 147d gap

Filing propagation · 9 filings · 9 states

View merged incident ↗
HHS OCRJan 17 · first
New Hampshire State AG+147d · this page

Pattern: first filing Jan 17 (NC), last Jun 13 (NH) — a 147-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.