Direct Scripts
ent_17076d5fc564f4a634333771
Disclosures
4
HHS OCR · State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
9,319
nationwide · HHS OCR OH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Direct Scripts
- Normalized
- direct scripts— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- OHIOHHS OCRas victim2019-03-06
Direct Scripts reported to HHS on 2019-03-06 a Hacking/IT Incident affecting 9,319 individuals. Breached information located on Network Server. The entity experienced a ransomware attack compromising PHI (names, addresses, prescription info). The entity is no longer in business.
- New Hampshire State AGas victim2019-02-22
Direct Scripts experienced a ransomware attack on January 30, 2019, affecting a server containing customer names, addresses, and prescription information (PHI). No SSNs or credit card data were stored on the impacted server. Two New Hampshire residents were affected. The company engaged a forensics firm and offered identity protection services.
- Montana State AGas victim2019-02-22
Direct Scripts notified Montana residents of a ransomware attack on January 30, 2019, that encrypted a server storing patient records. Potentially affected data included names, addresses, and prescription information (PHI). No SSN or credit card data was stored on the server. The company engaged forensic investigators and provided identity protection services.
- Illinois State AGas victim2019-01-01
DIRECT SCRIPTS filed a data-breach notice with the Illinois Attorney General during 2019 (case 2019-079). The register records the breach as discovered on January 30, 2019. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.