Ott Cone & Redpath, P.A.
ent_04843500c294da208cf9a8e7
Disclosures
5
State AG · HHS OCR · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
22,171
nationwide · HHS OCR NC
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Ott Cone & Redpath, P.A.
- Normalized
- ott cone redpath— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- Maryland State AGas victim2025-01-02
Ott Cone & Redpath, P.A. notified the Maryland AG of a criminal cyberattack impacting a firm email account on or about October 31, 2024. The incident affected 93 Maryland residents, exposing names, DOBs, SSNs, and medical/insurance info. Ott Cone engaged third-party experts, secured systems, and provided 12 months of credit monitoring.
- NORTH CAROLINAHHS OCRas victim2024-12-18
Ott Cone & Redpath, P.A., a North Carolina law firm acting as a HIPAA business associate, reported to HHS OCR on 2024-12-18 that an email phishing attack against employees compromised the PHI of 22,171 individuals. Affected data included names, addresses, dates of birth, Social Security numbers, claims and financial information, diagnoses, conditions, and other treatment information. The firm notified HHS, affected individuals, and the media; posted substitute notice; and remediated by adopting encryption, strengthening policies, and adding technical safeguards.
- New Hampshire State AGas victim2024-12-16
Ott Cone & Redpath, P.A. notified the NH AG of a criminal cyberattack impacting a firm email account on Oct 31, 2024. Six NH residents' PII was potentially accessed. The firm engaged forensic experts, deployed EDR, strengthened email security/MFA, and provided credit monitoring.
- Montana State AGas victim2024-12-13
Ott Cone & Redpath, P.A. notified Montana residents of a criminal cyberattack on a firm email account discovered on October 31, 2024. The incident involved unauthorized access to PII, including names and variable data. The firm engaged third-party experts, secured systems, and provided 12-24 months of credit monitoring via IDX.
- Maine State AGas victim2024-12-13
Ott Cone & Redpath, P.A., a law firm based in Greensboro, NC, experienced an external system breach (hacking) on June 3–4, 2024. The breach was discovered on October 31, 2024, approximately five months after it occurred. A total of 12,286 individuals were affected nationwide, including 9 Maine residents. Affected individuals were notified in writing on December 13, 2024. IDX was engaged to provide 12 months of ID restoration and credit monitoring services.